Vulnerabilities > Broadcom

DATE CVE VULNERABILITY TITLE RISK
2023-03-30 CVE-2023-27538 Improper Authentication vulnerability in multiple products
An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse.
5.5
2023-03-16 CVE-2023-27783 Reachable Assertion vulnerability in Broadcom Tcpreplay 4.4.3
An issue found in TCPreplay tcprewrite v.4.4.3 allows a remote attacker to cause a denial of service via the tcpedit_dlt_cleanup function at plugins/dlt_plugins.c.
network
low complexity
broadcom CWE-617
7.5
2023-03-16 CVE-2023-27784 NULL Pointer Dereference vulnerability in Broadcom Tcpreplay 4.4.3
An issue found in TCPReplay v.4.4.3 allows a remote attacker to cause a denial of service via the read_hexstring function at the utils.c:309 endpoint.
network
low complexity
broadcom CWE-476
7.5
2023-03-16 CVE-2023-27785 NULL Pointer Dereference vulnerability in Broadcom Tcpreplay 4.4.3
An issue found in TCPreplay TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse endpoints function.
network
low complexity
broadcom CWE-476
7.5
2023-03-16 CVE-2023-27786 NULL Pointer Dereference vulnerability in Broadcom Tcpreplay 4.4.3
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the macinstring function.
network
low complexity
broadcom CWE-476
7.5
2023-03-16 CVE-2023-27787 NULL Pointer Dereference vulnerability in Broadcom Tcpreplay 4.4.3
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the parse_list function at the list.c:81 endpoint.
network
low complexity
broadcom CWE-476
7.5
2023-03-16 CVE-2023-27788 Reachable Assertion vulnerability in Broadcom Tcpreplay 4.4.3
An issue found in TCPrewrite v.4.4.3 allows a remote attacker to cause a denial of service via the ports2PORT function at the portmap.c:69 endpoint.
network
low complexity
broadcom CWE-617
7.5
2023-03-16 CVE-2023-27789 Reachable Assertion vulnerability in Broadcom Tcpreplay 4.4.3
An issue found in TCPprep v.4.4.3 allows a remote attacker to cause a denial of service via the cidr2cidr function at the cidr.c:178 endpoint.
network
low complexity
broadcom CWE-617
7.5
2023-01-26 CVE-2023-23949 Cross-site Scripting vulnerability in Broadcom products
An authenticated user can supply malicious HTML and JavaScript code that will be executed in the client browser.
network
low complexity
broadcom CWE-79
5.4
2023-01-26 CVE-2023-23950 Cross-site Scripting vulnerability in Broadcom products
User’s supplied input (usually a CRLF sequence) can be used to split a returning response into two responses.
network
low complexity
broadcom CWE-79
6.1