Get real-time updates on Telegram
Verified
CVE-2026-85489: Brocade Active Support Connectivity Gateway 0 to before 3.5.0
Affected technology
Brocade Active Support Connectivity Gateway · 0 to before 3.5.0
Brocade
Component: Not specified by the source
Attack conditions (Vendor/CNA, CVSS 4.0): Adjacent network · No privileges required · No user interaction required
What an attacker can do
An unauthenticated network user can issue direct API requests to perform privileged actions, including accessing sensitive system configuration mapping data, modifying managed device inventories, and altering operational settings. Vendor/CNA’s CVSS 4.0 assessment (base score 8.7/10) rates confidentiality and integrity impact as high; availability impact as low.
- CWE
- CWE-306
- KEV
- no
Provenance
- NVD CVE API 2.0 · Source record · observed 2026-10-08 08:49:39.219831+00:00 UTC
Stable permalink: https://cybercodered.org/item/cve-cve-2026-85489.html