CVE-2023-31425

HIGH

Brocade Fabric OS <9.1.1 - Privilege Escalation

Title source: llm
STIX 2.1

Description

A vulnerability in the fosexec command of Brocade Fabric OS after Brocade Fabric OS v9.1.0 and, before Brocade Fabric OS v9.1.1 could allow a local authenticated user to perform privilege escalation to root by breaking the rbash shell. Starting with Fabric OS v9.1.0, “root” account access is disabled.

Scores

CVSS v3 7.8
EPSS 0.0014
EPSS Percentile 33.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-78
Status published
Products (1)
broadcom/fabric_operating_system 9.1.0
Published Aug 01, 2023
Tracked Since Feb 18, 2026