CVE-2024-10403
HIGHDescription
Brocade Fabric OS versions before 8.2.3e2, versions 9.0.0 through 9.2.0c, and 9.2.1 through 9.2.1a can capture the SFTP/FTP server password used for a firmware download operation initiated by SANnav or through WebEM in a weblinker core dump that is later captured via supportsave.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| broadcom | fabric_operating_system |
| broadcom | fabric_operating_system |
References
Frequently Asked Questions
What is CVE-2024-10403? +
How severe is CVE-2024-10403? +
What products are affected by CVE-2024-10403? +
How do I check if I'm vulnerable to CVE-2024-10403? +
Related Vulnerabilities
The TeleMessage service through 2025-05-05 is based on a JSP application in which the heap content is roughly equivalent to …
A buffer overflow vulnerability exists in Symantec Messaging Gateway versions 9.5 and before. A remote, anonymous attacker can exploit this …
A buffer overflow vulnerability exists in Symantec Messaging Gateway versions 10.5 and before. A remote, anonymous attacker can exploit this …
A buffer overflow vulnerability exists in Symantec Server Management Suite version 7.9 and before. A remote, anonymous attacker can exploit …
A buffer overflow vulnerability exists in Symantec Deployment Solution version 7.9 when parsing UpdateComputer tokens. A remote, anonymous attacker can …
Privilege escalation occurs when a user gets access to more resources or functionality than they are normally allowed.