๐Ÿ” CVE Alert

CVE-2026-85488

UNKNOWN 0.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Brocade ASCG before 3.5.0 has a well-known Brocade default password embedded in a script distributed to every customer. Any local authenticated user with read access to the installation path can discover this credential and perform privilege escalation on affected Open Virtual Appliance (OVA) deployments, where default configuration settings remain in place.

CWE CWE-798
Vendor brocade
Product brocade active support connectivity gateway
Published Oct 8, 2026
Stay Ahead of the Next One

Get instant alerts for brocade brocade active support connectivity gateway

Be the first to know when new unknown vulnerabilities affecting brocade brocade active support connectivity gateway are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Brocade / Brocade Active Support Connectivity Gateway
0 < 3.5.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
support.broadcom.com: https://support.broadcom.com/external/content/SecurityAdvisories/0/38384