No advisories yet.
Solution
Security update is provided in Brocade Fabric OS 10.0.1
Workaround
No workaround given by the vendor.
Thu, 08 Oct 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Oct 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Privilege Escalation via RBAC Bypass in Brocade Fabric OS Web Management | |
| First Time appeared |
Brocade
Brocade fabric Os |
|
| Vendors & Products |
Brocade
Brocade fabric Os |
Thu, 08 Oct 2026 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A logic vulnerability in Brocade Fabric OS versions before 10.0.1 web management framework allows an authenticated, low-privileged user to bypass inner Role-Based Access Control (RBAC) checks under specific environmental conditions. Successful exploitation lowers the system authorization mode for the active session context, allowing access to restricted configuration settings intended exclusively for administrative roles. | |
| Weaknesses | CWE-483 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: brocade
Published:
Updated: 2026-10-08T17:22:40.691Z
Reserved: 2026-09-21T20:29:06.560Z
Link: CVE-2026-94575
Updated: 2026-10-08T17:22:36.111Z
Status : Awaiting Analysis
Published: 2026-10-08T04:18:00.023
Modified: 2026-10-08T20:06:51.340
Link: CVE-2026-94575
No data.
OpenCVE Enrichment
Updated: 2026-10-08T04:30:13Z