CVE-2023-5973: Broadcom Fabric Operating System

Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.

Brocade Web Interface in Brocade Fabric OS v9.x and before v9.2.0 does not properly represent the portName to the user if the portName contains reserved characters. This could allow an authenticated user to alter the UI of the Brocade Switch and change ports display.

Affected products

  • Broadcom Fabric Operating System: from 9.0.0, before 9.2.0 (fixed in 9.2.0)

Published 2024-04-05. Last modified 2026-06-17.