CVE-2026-94585
- EPSS -
- Veröffentlicht 08.10.2026 04:40:08
- Zuletzt bearbeitet 08.10.2026 05:17:06
An authentication bypass vulnerability exists in the web management interface of Brocade Fabric OS versions before 9.2.2d running on the MXG610 platform. An unauthenticated, network-adjacent attacker can exploit an unauthenticated endpoint within the...
CVE-2026-94587
- EPSS -
- Veröffentlicht 08.10.2026 04:37:56
- Zuletzt bearbeitet 08.10.2026 05:17:06
A buffer overflow vulnerability exists in the WebTools administrative interface handling configuration download or file transfer operations of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. An authenticated user with permission...
CVE-2026-94579
- EPSS -
- Veröffentlicht 08.10.2026 04:35:58
- Zuletzt bearbeitet 08.10.2026 05:17:06
An OS command injection vulnerability exists in the PAM (Pluggable Authentication Module) session cleanup routines during SSH session termination on Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. An authenticated user authentic...
CVE-2026-94576
- EPSS -
- Veröffentlicht 08.10.2026 04:34:21
- Zuletzt bearbeitet 08.10.2026 05:17:05
An authentication logic and privilege escalation vulnerability exists in the account management interface of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. Under specific conditions, an authenticated user can bypass authorizati...
CVE-2026-87661
- EPSS -
- Veröffentlicht 08.10.2026 04:31:38
- Zuletzt bearbeitet 08.10.2026 05:17:05
Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1 directly accepts Apache configuration file data during service setup or re-initialization. An attacker capable of corrupting the configuration structure will prevent the web managem...
CVE-2026-87677
- EPSS -
- Veröffentlicht 08.10.2026 04:25:22
- Zuletzt bearbeitet 08.10.2026 05:17:05
An OS command injection vulnerability exists in the account management subsystem of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. When an administrator initiates an account deletion, the system invokes an internal maintenance ...
CVE-2026-94586
- EPSS -
- Veröffentlicht 08.10.2026 04:22:23
- Zuletzt bearbeitet 08.10.2026 05:17:06
A command injection vulnerability exists in the WebTools administrative interface handling configuration download or file transfer operations of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. An authenticated user with permissi...
CVE-2026-94581
- EPSS -
- Veröffentlicht 08.10.2026 04:20:30
- Zuletzt bearbeitet 08.10.2026 05:17:06
An OS command injection vulnerability exists in the REST API management interface of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1 allows an authenticated, high-privileged remote attacker to execute arbitrary system commands wi...
CVE-2026-94577
- EPSS -
- Veröffentlicht 08.10.2026 04:18:30
- Zuletzt bearbeitet 08.10.2026 05:17:06
A privilege escalation vulnerability exists in the internal Command-Line Interface (CLI) authorization handling mechanism of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. An authenticated user or local process that can manipul...
CVE-2026-87667
- EPSS -
- Veröffentlicht 08.10.2026 04:17:52
- Zuletzt bearbeitet 08.10.2026 04:17:52
An argument injection vulnerability exists in the configuration management command-line utility of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. When executing configuration viewing commands with search pattern filters, the ut...