Implementation of the Simple Network
Management Protocol (SNMP) operating on the Brocade 6547 (FC5022)
embedded switch blade, makes internal script calls to system.sh from
within the SNMP binary. An authenticated attacker could perform command
or parameter injection on SNMP operations that are only enabled on the
Brocade 6547 (FC5022) embedded switch. This injection could allow the
authenticated attacker to issue commands as Root.
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24411 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
23 Feb 2026, 14:53
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24411 - Vendor Advisory | |
| CPE | cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* cpe:2.3:h:broadcom:brocade_6547:-:*:*:*:*:*:*:* |
|
| First Time |
Broadcom brocade 6547
Broadcom fabric Operating System Broadcom |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.0 |
09 Sep 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-78 | |
| Summary |
|
15 Feb 2025, 00:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-02-15 00:15
Updated : 2026-02-23 14:53
NVD link : CVE-2024-5461
Mitre link : CVE-2024-5461
CVE.ORG link : CVE-2024-5461
JSON object : View
Products Affected
broadcom
- fabric_operating_system
- brocade_6547
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
