Back to Database
Status published
Medium
CVE-2023-31426
scp, sftp, ftp servers passwords in supportsave
Vulnerability Description
The Brocade Fabric OS Commands “configupload” and “configdownload” before Brocade Fabric OS v9.1.1c, v8.2.3d, v9.2.0 print scp, sftp, ftp servers passwords in supportsave. This could allow a remote authenticated attacker to access sensitive information.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-31426
Credits & Attribution
No credits recorded in the NVD database.
References
More from Brocade
View All →CVE-2025-9711
Privilege escalation in Brocade Fabric OS before 9.2.1c3, and 9.2.2 though 9.2.2b
High
8.5
CVE-2025-58383
Privilege escalation via bind command in Brocade Fabric OS
High
8.4
CVE-2025-58382
Privilege escalation in Brocade Fabric before 9.2.1c2 and 9.2.2 through 9.2.2a
High
8.5
CVE-2025-58381
Directory transversal vulnerability in Brocade Fabric OS before 9.2.1c2 and 9.2.2 through 9.2.2a using various shell commands
Medium
4.6
CVE-2025-58380
Directory transversal vulnerability in Brocade Fabric OS before 9.2.1 using grep command
Medium
4.6
Affected Vendor
Brocade
View all reports →Affected Software
Brocade Fabric OS
Vulnerable Versions:
before Brocade Fabric OS v9.1.1c, v8.2.3d, v9.2.0
Timeline
Official Publish:
August 1st, 2023
Last Modified:
August 2nd, 2024
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N