mplementation of the Simple Network Management Protocol (SNMP) operating on the Brocade 6547 (FC5022) embedded switch blade, makes internal script calls to system.sh from within the SNMP binary. An authenticated attacker could perform command or parameter injection on SNMP operations that are only enabled on the Brocade 6547 (FC5022) embedded switch. This injection could allow the authenticated attacker to issue commands as Root.
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24411 | Vendor Advisory |
Configuration 1 (hide)
| AND |
|
23 Feb 2026, 14:53
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:h:broadcom:brocade_6547:-:*:*:*:*:*:*:* cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.0 |
| First Time |
Broadcom brocade 6547
Broadcom fabric Operating System Broadcom |
|
| References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/24411 - Vendor Advisory |
09 Sep 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-78 | |
| Summary |
|
15 Feb 2025, 00:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2025-02-15 00:15
Updated : 2026-02-23 14:53
NVD link : CVE-2024-5461
Mitre link : CVE-2024-5461
CVE.ORG link : CVE-2024-5461
JSON object : View
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')