Get real-time updates on Telegram
Verified
CVE-2026-85488: Brocade Active Support Connectivity Gateway 0 to before 3.5.0
Affected technology
Brocade Active Support Connectivity Gateway · 0 to before 3.5.0
Brocade
Description’s affected range: before 3.5.0
Component: Not specified by the source
Attack conditions (Vendor/CNA, CVSS 4.0): Local · Low privileges required · Passive user interaction
What an attacker can do
Any local authenticated user with read access to the installation path can discover this credential and perform privilege escalation on affected Open Virtual Appliance (OVA) deployments, where default configuration settings remain in place. Vendor/CNA’s CVSS 4.0 assessment (base score 7.0/10) rates confidentiality, integrity and availability impact as high.
- CWE
- CWE-798
- KEV
- no
Provenance
- NVD CVE API 2.0 · Source record · observed 2026-10-08 08:49:39.219831+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2026-85488.html