CVE-2020-15372

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
25/09/2020
Last modified:
22/06/2021

Description

A vulnerability in the command-line interface in Brocade Fabric OS before Brocade Fabric OS v8.2.2a1, 8.2.2c, v7.4.2g, v8.2.0_CBN3, v8.2.1e, v8.1.2k, v9.0.0, could allow a local authenticated attacker to modify shell variables, which may lead to an escalation of privileges or bypassing the logging.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 7.4.2g (excluding)
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 8.0.0 (including) 8.1.2k (excluding)
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 8.2.0 (including) 8.2.0_cbn3 (excluding)
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 8.2.1 (including) 8.2.1e (excluding)
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 8.2.2 (including) 8.2.2a1 (excluding)
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 8.2.2b (including) 8.2.2c (excluding)