Get real-time updates on Telegram
CVE-2026-85423: Brocade Active Support Connectivity Gateway 0 to before 3.5.0
Affected technology
Brocade Active Support Connectivity Gateway · 0 to before 3.5.0
Brocade
Description’s affected range: versions before 3.5.0
Component: Not specified by the source
Attack conditions (Vendor/CNA, CVSS 4.0): Adjacent network · No privileges required · No user interaction required
What an attacker can do
An attacker with network access to the service can instruct the application to establish SSH connections to arbitrary hosts and execute arbitrary system commands, effectively turning the appliance into an unauthenticated proxy or execution vector. Vendor/CNA’s CVSS 4.0 assessment (base score 8.6/10) rates confidentiality and integrity impact as high; availability impact as none.
- CWE
- CWE-306
- KEV
- no
Provenance
- NVD CVE API 2.0 · Source record · observed 2026-10-08 08:49:39.219831+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2026-85423.html