Implementation of the Simple Network
Management Protocol (SNMP) operating on the Brocade 6547 (FC5022)
embedded switch blade, makes internal script calls to system.sh from
within the SNMP binary. An authenticated attacker could perform command
or parameter injection on SNMP operations that are only enabled on the
Brocade 6547 (FC5022) embedded switch. This injection could allow the
authenticated attacker to issue commands as Root.
Metrics
Affected Vendors & Products
References
History
Tue, 18 Feb 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 15 Feb 2025 00:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Implementation of the Simple Network Management Protocol (SNMP) operating on the Brocade 6547 (FC5022) embedded switch blade, makes internal script calls to system.sh from within the SNMP binary. An authenticated attacker could perform command or parameter injection on SNMP operations that are only enabled on the Brocade 6547 (FC5022) embedded switch. This injection could allow the authenticated attacker to issue commands as Root. | |
Title | Command or parameter injection via unique embedded switch SNMP commands. | |
Weaknesses | CWE-77 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: brocade
Published:
Updated: 2025-02-18T17:01:58.493Z
Reserved: 2024-05-29T04:50:55.263Z
Link: CVE-2024-5461

Updated: 2025-02-18T17:01:54.508Z

Status : Received
Published: 2025-02-15T00:15:13.513
Modified: 2025-02-15T00:15:13.513
Link: CVE-2024-5461

No data.