CVE-2026-87688
- EPSS -
- Veröffentlicht 08.10.2026 03:20:35
- Zuletzt bearbeitet 08.10.2026 04:17:56
An input validation vulnerability exists in the security certificate management component of the Brocade Fabric OS administrative management API. When processing certificate management operations, user-supplied certificate identifiers are handled wit...
CVE-2026-94583
- EPSS -
- Veröffentlicht 08.10.2026 03:16:38
- Zuletzt bearbeitet 08.10.2026 03:16:38
A race condition vulnerability exists in the request processing logic of the REST management interface on Brocade Fabric OS versions before 10.0.1. When handling concurrent incoming network management FCIP requests, a timing window exists between whe...
CVE-2026-94582
- EPSS -
- Veröffentlicht 08.10.2026 03:16:37
- Zuletzt bearbeitet 08.10.2026 03:16:37
A memory buffer overflow vulnerability exists in the internal diagnostic and route validation routines used by the Fabric Shortest Path First (FSPF) protocol component of Brocade Fabric OS versions before 10.0.1. While this code path is part of inter...
CVE-2026-87668
- EPSS -
- Veröffentlicht 08.10.2026 03:16:36
- Zuletzt bearbeitet 08.10.2026 03:16:36
A stack-based buffer overflow vulnerability exists in the diagnostic execution utility of Brocade Fabric OS versions before 10.0.1. When processing command arguments for diagnostic operations, the utility tokenizes user-supplied input into an interna...
- EPSS -
- Veröffentlicht 08.10.2026 03:16:35
- Zuletzt bearbeitet 08.10.2026 03:16:35
A stack-based buffer overflow vulnerability exists in the Internet Key Exchange (IKEv2) protocol handler on Brocade Fabric OS versions before 10.0.1. The vulnerability occurs when processing initial IKE key exchange requests on extension switches or ...
CVE-2026-94584
- EPSS -
- Veröffentlicht 08.10.2026 03:14:46
- Zuletzt bearbeitet 08.10.2026 04:18:00
A race condition and thread-safety vulnerability exists in the web management daemon of Brocade Fabric OS versions before 10.0.1. When handling user authentication requests across a multi-threaded execution pool, this race condition causes PAM module...
CVE-2026-94580
- EPSS -
- Veröffentlicht 08.10.2026 03:11:54
- Zuletzt bearbeitet 08.10.2026 04:18:00
An arbitrary file and directory deletion vulnerability exists in the REST API management interface handling USB storage operations on Brocade Fabric OS versions before 10.0.1. An authenticated user possessing USB management privileges can manipulate ...
CVE-2026-94575
- EPSS -
- Veröffentlicht 08.10.2026 03:09:26
- Zuletzt bearbeitet 08.10.2026 04:18:00
A logic vulnerability in Brocade Fabric OS versions before 10.0.1 web management framework allows an authenticated, low-privileged user to bypass inner Role-Based Access Control (RBAC) checks under specific environmental conditions. Successful exploi...
CVE-2026-87672
- EPSS -
- Veröffentlicht 08.10.2026 02:55:58
- Zuletzt bearbeitet 08.10.2026 03:16:36
An information disclosure vulnerability exists in the SupportLink diagnostic collection utilities of Brocade Fabric OS versions before 10.0.1. When SupportLink is configured to use an authenticated HTTP proxy, the system stores the full proxy URL. An...
CVE-2026-87670
- EPSS -
- Veröffentlicht 08.10.2026 02:51:42
- Zuletzt bearbeitet 08.10.2026 03:16:36
An authorization logic vulnerability exists in the Brocade Fabric OS versions before 10.0.1 REST API gateway. The internal gate guarding restricted management endpoints relies exclusively on client-controlled HTTP headers. An authenticated user with ...