CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-85489: Brocade Active Support Connectivity Gateway 0 to before 3.5.0

Affected technology

Brocade Active Support Connectivity Gateway · 0 to before 3.5.0
Brocade

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Adjacent network · No privileges required · No user interaction required

What an attacker can do

An unauthenticated network user can issue direct API requests to perform privileged actions, including accessing sensitive system configuration mapping data, modifying managed device inventories, and altering operational settings. Vendor/CNA’s CVSS 4.0 assessment (base score 8.7/10) rates confidentiality and integrity impact as high; availability impact as low.

Published

CWE
CWE-306
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-85489.html