CVE-2026-87425
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
An unauthenticated remote attacker can modify the TLS client trust store in Brocade ASCG versions before 3.5.0. By supplying an unauthorized Certificate Authority (CA) certificate to an unauthenticated management interface, the attacker can cause the system to trust unauthorized certificates, potentially enabling Man-in-the-Middle (MITM) attacks against outbound communications with managed switches and peer nodes.
| CWE | CWE-295 |
| Vendor | brocade |
| Product | brocade active support connectivity gateway |
| Published | Oct 8, 2026 |
Stay Ahead of the Next One
Get instant alerts for brocade brocade active support connectivity gateway
Be the first to know when new unknown vulnerabilities affecting brocade brocade active support connectivity gateway are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Brocade / Brocade Active Support Connectivity Gateway
0 < 3.5.0