Description
Broadcom RAID Controller web interface is vulnerable due to insecure default of HTTP configuration that does not safeguard cookies with Secure attribute
Affected products
- Broadcom / LSI Storage Authority (LSA)0 – 7.017.011.000
- Intel / RAID Web Console 3 (RWC3)0 – 7.017.011.000