broadcom raid-controller-web-interface CVE-2023-4338 is a vulnerability in Broadcom Raid Controller Web Interface
Published on August 15, 2023

Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not provide X-Content-Type-Options Headers

NVD

Vulnerability Analysis

CVE-2023-4338 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. It has the highest possible exploitability rating (3.9). The potential impact of an exploit of this vulnerability is considered to be critical as this vulnerability has a high impact to the confidentiality, integrity and availability of this component.


Products Associated with CVE-2023-4338

You can be notified by stack.watch whenever vulnerabilities like CVE-2023-4338 are published in these products:

 

What versions of Raid Controller Web Interface are vulnerable to CVE-2023-4338?