Brocade Fabric OS versions before v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, v7.4.2g contain an improper input validation weakness in the command line interface when secccrypptocfg is invoked. The vulnerability could allow a local authenticated user to run arbitrary commands and perform escalation of privileges.
2020-12-11T21:15:12.190
2024-11-21T05:05:26.500
Modified
CVSSv3.1: 6.7 (MEDIUM)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | broadcom | fabric_operating_system | < 7.4.2g | Yes |
Operating System | broadcom | fabric_operating_system | < 8.1.2k | Yes |
Operating System | broadcom | fabric_operating_system | < 8.2.0_cbn3 | Yes |
Operating System | broadcom | fabric_operating_system | < 8.2.1e | Yes |
Operating System | broadcom | fabric_operating_system | < 8.2.2c | Yes |