CVE-2023-3489

Severity CVSS v4.0:
Pending analysis
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
31/08/2023
Last modified:
13/02/2025

Description

The <br /> firmwaredownload command on Brocade Fabric OS v9.2.0 could log the <br /> FTP/SFTP/SCP server password in clear text in the SupportSave file when <br /> performing a downgrade from Fabric OS v9.2.0 to any earlier version of <br /> Fabric OS.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:broadcom:fabric_operating_system:9.2.0:*:*:*:*:*:*:*