9.8
CVE-2023-4329
- EPSS 0.09%
- Published 15.08.2023 19:15:11
- Last modified 21.11.2024 08:34:52
- Source cret@cert.org
- Teams watchlist Login
- Open Login
Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute
Data is provided by the National Vulnerability Database (NVD)
Broadcom ≫ Raid Controller Web Interface Version51.12.0-2779
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.09% | 0.266 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|