cve/2023/CVE-2023-5973.md

18 lines
812 B
Markdown
Raw Normal View History

2024-05-28 08:49:17 +00:00
### [CVE-2023-5973](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-5973)
![](https://img.shields.io/static/v1?label=Product&message=Fabric%20OS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%20Versions%20v9.x%20and%20before%20v9.2.0%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-346%20Origin%20Validation%20Error&color=brighgreen)
### Description
Brocade Web Interface in Brocade Fabric OS v9.x and before v9.2.0 does not properly represent the portName to the user if the portName contains reserved characters. This could allow an authenticated user to alter the UI of the Brocade Switch and change ports display.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds