Vulnerability identifier: #VU67461
Vulnerability risk: Low
CVSSv3.1:
CVE-ID:
CWE-ID:
CWE-256
Exploitation vector: Local
Exploit availability: No
Vulnerable software:
Brocade Fabric OS
Operating systems & Components /
Operating system
Vendor:
Description
The vulnerability allows a local user to gain access to other users' credentials.
The vulnerability exists due to application stored credentials in the debug statements. A local user can extract the passwords from a debug file.
Mitigation
Install updates from vendor's website.
Vulnerable software versions
External links
http://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2022-2076
Can this vulnerability be exploited remotely?
Is there known malware, which exploits this vulnerability?