Description
A vulnerability in the web management interface of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow attackers to intercept or manipulate a user's session ID.
References (1)
Core 1
Core References
Vendor Advisory x_refsource_confirm
https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2018-736
Scores
CVSS v3
7.5
EPSS
0.0019
EPSS Percentile
41.1%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Details
CWE
CWE-384
Status
published
Products (1)
broadcom/fabric_operating_system
7.4.2 - 7.4.2d
Published
Nov 08, 2018
Tracked Since
Feb 18, 2026