CVE-2024-5462 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

If Brocade Fabric OS before Fabric OS 9.2.0 configuration settings are not set to encrypt SNMP passwords, then the SNMP privsecret / authsecret fields can be ex…
Medium CVSS: 5.3

CVE-2024-5462

If Brocade Fabric OS before Fabric OS 9.2.0 configuration settings are not set to encrypt SNMP passwords, then the SNMP privsecret / authsecret fields can be exposed in plaintext. The plaintext passwords can be exposed in a configupload capture or a supportsave capture if encryption of passwords is not enabled. An attacker can use these passwords to fetch values of the supported OIDs via SNMPv3 queries. There are also a limited number of MIB objects that can be modified.
Vendor
Broadcom
Product
Fabric Operating System
CWE
CWE-319
Yayın Tarihi
2025-02-15 00:15:13
Güncelleme
2026-02-23 14:56:40
Source Identifier
sirt@brocade.com
KEV Date Added
-

Kategoriler

Referanslar