CVE-2023-4336
CRITICALBroadcom RAID Controller - Info Disclosure
Title source: llmDescription
Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard cookies with Secure attribute
Scores
CVSS v3
9.8
EPSS
0.0008
EPSS Percentile
24.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Classification
Status
published
Affected Products (1)
broadcom/raid_controller_web_interface
Timeline
Published
Aug 15, 2023
Tracked Since
Feb 18, 2026