Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute
Subscriptions
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-54194 | Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute |
Fixes
Solution
This issue is fixed in 7.017.011.000. For more information please contact your Broadcom representative.
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Nov 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Tue, 08 Oct 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Broadcom lsi Storage Authority
Intel Intel raid Web Console 3 |
|
| CPEs | cpe:2.3:a:broadcom:lsi_storage_authority:*:*:*:*:*:*:*:* cpe:2.3:a:intel:raid_web_console_3:-:*:*:*:*:windows:*:* |
|
| Vendors & Products |
Broadcom lsi Storage Authority
Intel Intel raid Web Console 3 |
|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2025-11-04T16:10:22.787Z
Reserved: 2023-08-14T21:25:58.373Z
Link: CVE-2023-4329
Updated: 2025-11-04T16:10:22.787Z
Status : Modified
Published: 2023-08-15T19:15:11.117
Modified: 2025-11-04T17:15:40.003
Link: CVE-2023-4329
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD