CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-85423: Brocade Active Support Connectivity Gateway 0 to before 3.5.0

Affected technology

Brocade Active Support Connectivity Gateway · 0 to before 3.5.0
Brocade

Description’s affected range: versions before 3.5.0

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Adjacent network · No privileges required · No user interaction required

What an attacker can do

An attacker with network access to the service can instruct the application to establish SSH connections to arbitrary hosts and execute arbitrary system commands, effectively turning the appliance into an unauthenticated proxy or execution vector. Vendor/CNA’s CVSS 4.0 assessment (base score 8.6/10) rates confidentiality and integrity impact as high; availability impact as none.

Published

CWE
CWE-306
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-85423.html