5.3

CVE-2013-0570

The Fibre Channel over Ethernet (FCoE) feature in IBM System Networking and Blade Network Technology (BNT) switches running IBM Networking Operating System (aka NOS, formerly BLADE Operating System) floods data frames with unknown MAC addresses out on all interfaces on the same VLAN, which might allow remote attackers to obtain sensitive information in opportunistic circumstances by eavesdropping on the broadcast domain. IBM X-Force ID: 83166.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmNetwork Operating System Version-
   IbmFlex System Fabric Cn4093 Version-
   IbmFlex System Fabric En4093 Version-
   IbmFlex System Si4093 Version-
   IbmRackswitch G8124 Version-
   IbmRackswitch G8124-e Version-
   IbmRackswitch G8124-er Version-
   IbmRackswitch G8264 Version-
   IbmRackswitch G8264-t Version-
   IbmRackswitch G8264cs Version-
   IbmRackswitch G8316 Version-
   IbmVirtual Fabric Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.18% 0.357
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.3 1.6 3.6
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 2.9 5.5 2.9
AV:A/AC:M/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.