CVE-2023-4343

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 15, 2023
Updated: Aug 21, 2023

Summary

CVE-2023-4343 is a cybersecurity vulnerability affecting Broadcom RAID Controller web interfaces. The issue arises from the exposure of sensitive password information in URL search parameters. An attacker with network access to the affected system could potentially discover these passwords by analyzing the web traffic or through other means, leading to unauthorized access to the RAID controller interface and potential data theft or system compromise. Users are advised to update their controllers to the latest firmware version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share