Loading HuntDB...

LSI Storage Authority (LSA)

1 Version 22 CVEs

Recent CVEs

CVE-2023-4325

Broadcom RAID Controller web interface is vulnerable due to usage of Libcurl with LSA has known vulnerabilities

UNKNOWN Aug 15, 2023

CVE-2023-4326

Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that supports obsolete SHA1-based ciphersuites

UNKNOWN Aug 15, 2023

CVE-2023-4327

Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are accessible to any local user on Linux

UNKNOWN Aug 15, 2023

CVE-2023-4329

Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute

UNKNOWN Aug 15, 2023

CVE-2023-4333

Broadcom RAID Controller web interface doesn’t enforce SSL cipher ordering by server

UNKNOWN Aug 15, 2023

CVE-2023-4334

Broadcom RAID Controller Web server (nginx) is serving private files without any authentication

UNKNOWN Aug 15, 2023

CVE-2023-4337

Broadcom RAID Controller web interface is vulnerable to improper session handling of managed servers on Gateway installation

UNKNOWN Aug 15, 2023

CVE-2023-4343

Broadcom RAID Controller web interface is vulnerable due to exposure of sensitive password information in the URL as a URL search parameter

UNKNOWN Aug 15, 2023

CVE-2023-4344

Broadcom RAID Controller web interface is vulnerable to insufficient randomness due to improper use of ssl.rnd to setup CIM connection

UNKNOWN Aug 15, 2023

CVE-2023-4345

Broadcom RAID Controller web interface is vulnerable client-side control bypass leads to unauthorized data access for low privileged user

UNKNOWN Aug 15, 2023