CVE-2018-6433

A vulnerability in the secryptocfg export command of Brocade Fabric OS versions before 8.2.1, 8.1.2f, 8.0.2f, 7.4.2d could allow a local attacker to bypass the export file access restrictions and initiate a file copy from the source to a remote system.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
brocadeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 5%
VendorProductVersion
broadcomfabric_operating_system
7.4.2 ≤
𝑥
< 7.4.2d
broadcomfabric_operating_system
8.0.2 ≤
𝑥
< 8.0.2f
broadcomfabric_operating_system
8.1.2 ≤
𝑥
< 8.1.2f
broadcomfabric_operating_system
8.2.0 ≤
𝑥
< 8.2.1
𝑥
= Vulnerable software versions