CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-87662: Fabric OS 0 to before 9.2.2d, 10.0.0 through 10.0.0a1

Affected technology

Fabric OS · 0 to before 9.2.2d, 10.0.0 through 10.0.0a1
Brocade

Description’s affected range: versions before 9.2.2d and 10.0.0 through 10.0.0a1 handling of specific download protocols utilizes unsanitized parameter strings

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 4.0): Local · High privileges required · Passive user interaction

What an attacker can do

An attacker can execute arbitrary shell commands with the firmware management daemon's elevated privileges. Vendor/CNA’s CVSS 4.0 assessment (base score 7.0/10) rates confidentiality, integrity and availability impact as high.

Published

CWE
CWE-78
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-87662.html