CVE-2023-31426: Broadcom Fabric Operating System
Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.
The Brocade Fabric OS Commands “configupload” and “configdownload” before Brocade Fabric OS v9.1.1c, v8.2.3d, v9.2.0 print scp, sftp, ftp servers passwords in supportsave. This could allow a remote authenticated attacker to access sensitive information.
Affected products
- Broadcom Fabric Operating System: before 8.2.3d (fixed in 8.2.3d); from 9.0.0, before 9.1.1c (fixed in 9.1.1c)
Published 2023-08-01. Last modified 2026-06-17.