Description
Brocade Fabric OS before Brocade Fabric OS 9.1.1c, 9.2.0 contains a vulnerability when using various commands such as “chassisdistribute”, “reboot”, “rasman”, errmoduleshow, errfilterset, hassiscfgperrthreshold, supportshowcfgdisable and supportshowcfgenable commands that can cause the content of shell interpreted variables to be printed in the terminal.
References (2)
Core 2
Core References
Third Party Advisory
https://security.netapp.com/advisory/ntap-20230908-0007/
Scores
CVSS v3
5.5
EPSS
0.0016
EPSS Percentile
36.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-209
CWE-77
Status
published
Products (1)
broadcom/fabric_operating_system
< 9.1.1c
Published
Aug 01, 2023
Tracked Since
Feb 18, 2026