ZeroHour

CVE-2023-4329

CVSS 3.1
9.8 critical
EPSS
<1%p51
Published
()
Modified
Description

Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute

Vendors
broadcom
Products
raid controller web interface
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.