A vulnerability in the web interface in Brocade Fabric OS before v9.2.1, v9.2.0b, and v9.1.1d prints encoded session passwords on session storage for Virtual Fabric platforms.
This could allow an authenticated user to view other users' session encoded passwords.
This could allow an authenticated user to view other users' session encoded passwords.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26927 | A vulnerability in the web interface in Brocade Fabric OS before v9.2.1, v9.2.0b, and v9.1.1d prints encoded session passwords on session storage for Virtual Fabric platforms. This could allow an authenticated user to view other users' session encoded passwords. |
Fixes
Solution
The security update is provided in Brocade Fabric OS v9.2.1, v9.2.0b, v9.1.1d
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Feb 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Broadcom
Broadcom fabric Operating System |
|
| CPEs | cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Broadcom
Broadcom fabric Operating System |
Thu, 22 Aug 2024 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: brocade
Published:
Updated: 2024-08-22T18:03:11.060Z
Reserved: 2024-03-22T05:00:09.537Z
Link: CVE-2024-29953
Updated: 2024-08-22T18:03:11.060Z
Status : Analyzed
Published: 2024-06-26T00:15:10.030
Modified: 2025-02-04T15:19:11.473
Link: CVE-2024-29953
No data.
OpenCVE Enrichment
No data.
EUVD