A Reflective XSS Vulnerability in HTTP Management Interface in Brocade Fabric OS versions before Brocade Fabric OS v9.0.0, v8.2.2c, v8.2.1e, v8.1.2k, v8.2.0_CBN3, v7.4.2g could allow authenticated attackers with access to the web interface to hijack a user’s session and take over the account.
References
Link | Resource |
---|---|
https://www.broadcom.com/support/fibre-channel-networking/security-advisories/brocade-security-advisory-2020-1073 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-09-25 07:15
Updated : 2021-08-23 07:47
NVD link : CVE-2018-6447
Mitre link : CVE-2018-6447
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
broadcom
- fabric_operating_system