CVE-2026-87681
- EPSS -
- Veröffentlicht 08.10.2026 00:57:36
- Zuletzt bearbeitet 08.10.2026 01:16:32
An Access Control Bypass vulnerability exists in the Role-Based Access Control (RBAC) validation engine of Brocade Fabric OS versions before 10.0.1. When processing certain management protocol operations, the RBAC engine incorrectly categorizes non-s...
CVE-2026-87680
- EPSS -
- Veröffentlicht 08.10.2026 00:51:46
- Zuletzt bearbeitet 08.10.2026 01:16:32
A command injection vulnerability in the REST API management interface of Brocade Fabric OS versions before 10.0.1 allows an authenticated user to execute arbitrary system commands via crafted input parameters.
CVE-2026-87679
- EPSS -
- Veröffentlicht 08.10.2026 00:44:41
- Zuletzt bearbeitet 08.10.2026 01:16:32
When Brocade Fabric OS versions before 10.0.1 processes trunk configuration operations, the application parses user-supplied list strings into dynamically allocated heap arrays without enforcing boundary checks on the maximum allowable number of elem...
CVE-2025-9711
- EPSS 0.13%
- Veröffentlicht 03.02.2026 06:15:53
- Zuletzt bearbeitet 06.02.2026 20:11:19
A vulnerability in Brocade Fabric OS before 9.2.1c3 could allow elevating the privileges of the local authenticated user to “root” using the export option of seccertmgmt and seccryptocfg commands.
CVE-2025-58381
- EPSS 0.18%
- Veröffentlicht 03.02.2026 06:15:52
- Zuletzt bearbeitet 06.02.2026 20:53:22
A vulnerability in Brocade Fabric OS before 9.2.1c2 could allow an authenticated attacker with admin privileges using the shell commands “source, ping6, sleep, disown, wait to modify the path variables and move upwards in the directory structure ...
CVE-2025-58380
- EPSS 0.18%
- Veröffentlicht 03.02.2026 05:16:21
- Zuletzt bearbeitet 06.02.2026 20:52:59
A vulnerability in Brocade Fabric OS before 9.2.1 could allow an authenticated attacker with admin privileges using the shell command “grep” to modify the path variables and move upwards in the directory structure or to traverse to different director...
CVE-2026-0383
- EPSS 0.2%
- Veröffentlicht 03.02.2026 04:15:55
- Zuletzt bearbeitet 06.02.2026 20:52:11
A vulnerability in Brocade Fabric OS could allow an authenticated, local attacker with privileges to access the Bash shell to access insecurely stored file contents including the history command.
CVE-2025-58383
- EPSS 0.51%
- Veröffentlicht 03.02.2026 02:16:07
- Zuletzt bearbeitet 06.02.2026 20:51:56
A vulnerability in Brocade Fabric OS versions before 9.2.1c2 could allow an administrator-level user to execute the bind command, to escalate privileges and bypass security controls allowing the execution of arbitrary commands.
CVE-2025-58382
- EPSS 0.6%
- Veröffentlicht 03.02.2026 02:16:07
- Zuletzt bearbeitet 06.02.2026 20:17:35
A vulnerability in the secure configuration of authentication and management services in Brocade Fabric OS before Fabric OS 9.2.1c2 could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands as root...
CVE-2025-58379
- EPSS 0.14%
- Veröffentlicht 03.02.2026 02:16:06
- Zuletzt bearbeitet 06.02.2026 20:50:29
Brocade Fabric OS before 9.2.1 has a vulnerability that could allow a local authenticated attacker to reveal command line passwords using commands that may expose higher privilege sensitive information by a lower privileged user.