CVE-2023-4328
Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are accessible to any local user on Linux
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Aug 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are accessible to any local user on Windows
Affected products
Broadcom · LSI Storage Authority (LSA)Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →