CVE-2023-4328

MEDIUM

Broadcom RAID Controller - Info Disclosure

Title source: llm

Description

Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are accessible to any local user on Windows

Scores

CVSS v3 5.5
EPSS 0.0003
EPSS Percentile 7.5%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Classification

CWE
CWE-522
Status published

Affected Products (1)

broadcom/raid_controller_web_interface

Timeline

Published Aug 15, 2023
Tracked Since Feb 18, 2026