CVE-2023-31426
scp, sftp, ftp servers passwords in supportsave
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.8EPSS 0.5%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
01 Aug 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
The Brocade Fabric OS Commands “configupload” and “configdownload” before Brocade Fabric OS v9.1.1c, v8.2.3d, v9.2.0 print scp, sftp, ftp servers passwords in supportsave. This could allow a remote authenticated attacker to access sensitive information.
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
Affected products
Brocade · Brocade Fabric OSWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →