Cross-site scripting (XSS) vulnerability in the web-based management interface of Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) versions before 7.4.2b, 8.1.2 and 8.2.0 could allow remote attackers to execute arbitrary code or access sensitive browser-based information.
References
Configurations
Configuration 1 (hide)
|
History
22 Jun 2021, 15:20
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:brocade:fabric_os:8.0.2d:*:*:*:*:*:*:* cpe:2.3:o:brocade:fabric_os:8.0.2c:*:*:*:*:*:*:* cpe:2.3:o:brocade:fabric_os:*:*:*:*:*:*:*:* |
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* cpe:2.3:o:broadcom:fabric_operating_system:8.1.1:*:*:*:*:*:*:* cpe:2.3:o:broadcom:fabric_operating_system:8.0.2:*:*:*:*:*:*:* |
Information
Published : 2018-02-08 22:29
Updated : 2024-02-04 19:46
NVD link : CVE-2017-6225
Mitre link : CVE-2017-6225
CVE.ORG link : CVE-2017-6225
JSON object : View
Products Affected
brocade
- fabric_os
broadcom
- fabric_operating_system
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')