Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. Broadcom/
  3. Broadcom Symantec Enterprise Cloud

Broadcom Symantec Enterprise Cloud

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 100 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Enterprise cloud security platform for endpoint, network, email & data protection

by Broadcom · broadcom.com · source ↗

Known CVEs (100)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2023-4337 ↗CRITICAL 9.82023

    Broadcom RAID Controller web interface is vulnerable to improper session handling of managed servers on Gateway installation

  • CVE-2023-4336 ↗CRITICAL 9.82023

    Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard cookies with Secure attribute

  • CVE-2023-4335 ↗HIGH 7.52023

    Broadcom RAID Controller Web server (nginx) is serving private server-side files without any authentication on Linux

  • CVE-2023-4334 ↗HIGH 7.52023

    Broadcom RAID Controller Web server (nginx) is serving private files without any authentication

  • CVE-2023-4333 ↗MEDIUM 5.52023

    Broadcom RAID Controller web interface doesn’t enforce SSL cipher ordering by server

  • CVE-2023-4332 ↗HIGH 7.52023

    Broadcom RAID Controller web interface is vulnerable due to Improper permissions on the log file

  • CVE-2023-4331 ↗HIGH 7.52023

    Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that support obsolete and vulnerable TLS protocols

  • CVE-2023-4330 ↗2023

    Rejected reason: Broadcom were unable to duplicate the attack as described by Intel DCG Team.

  • CVE-2023-4329 ↗CRITICAL 9.82023

    Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard SESSIONID cookie with SameSite attribute

  • CVE-2023-4328 ↗MEDIUM 5.52023

    Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are accessible to any local user on Windows

  • CVE-2023-4327 ↗MEDIUM 5.52023

    Broadcom RAID Controller web interface is vulnerable to exposure of sensitive data and the keys used for encryption are accessible to any local user on Linux

  • CVE-2023-4326 ↗HIGH 7.52023

    Broadcom RAID Controller web interface is vulnerable has an insecure default TLS configuration that supports obsolete SHA1-based ciphersuites

  • CVE-2023-4325 ↗CRITICAL 9.82023

    Broadcom RAID Controller web interface is vulnerable due to usage of Libcurl with LSA has known vulnerabilities

  • CVE-2023-4324 ↗CRITICAL 9.82023

    Broadcom RAID Controller web interface is vulnerable due to insecure defaults of lacking HTTP Content-Security-Policy headers

  • CVE-2023-4323 ↗CRITICAL 9.82023

    Broadcom RAID Controller web interface is vulnerable to improper session management of active sessions on Gateway setup

  • CVE-2023-4345 ↗MEDIUM 6.52023

    Broadcom RAID Controller web interface is vulnerable client-side control bypass leads to unauthorized data access for low privileged user

  • CVE-2022-3628 ↗MEDIUM 6.62023

    A buffer overflow flaw was found in the Linux kernel Broadcom Full MAC Wi-Fi driver. This issue occurs when a user connects to a malicious USB device. This can allow a local user to crash the system o…

  • CVE-2022-3643 ↗MEDIUM 6.52022

    Guests can trigger NIC interface reset/abort/crash via netback It is possible for a guest to trigger a NIC interface reset/abort/crash in a Linux based network backend by sending certain kinds of pack…

  • CVE-2021-42775 ↗CRITICAL 9.12021

    Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a vulnerability in the remote firmware download fea…

  • CVE-2021-42774 ↗CRITICAL 9.82021

    Broadcom Emulex HBA Manager/One Command Manager versions before 11.4.425.0 and 12.8.542.31, if not installed in Strictly Local Management mode, have a buffer overflow vulnerability in the remote firmw…

  • …and 80 more

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Cloud-Native Application Protection (CNAPP) products

see all →
  • ARMO · ARMO
  • ARMO Cloud Application Detection & Response · ARMO
  • ARMO Continuous Cloud Security Posture Management · ARMO
  • ARMO Kubernetes Security Posture Management · ARMO
  • ARMO Runtime-based Cloud Hardening & Remediation · ARMO
  • ARMO Vulnerability Management · ARMO
  • AccuKnox 5G Security (5GNAPP) · AccuKnox
  • AccuKnox Application Security · AccuKnox