CVE-2026-87659
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A critical authorization bypass vulnerability exists in the Management Server handling of Brocade Fabric OS versions before 10.0.1. A compromised switch connected to the fabric can transmit crafted inband Fibre Channel vendor-unique CT (Common Transport) management requests to bypass administrative authentication. Successful exploitation allows an unauthorized peer switch to execute administrative actions on the target device, including resetting administrative passwords, initiating system reboots, and triggering firmware downloads.
| CWE | CWE-306 |
| Vendor | brocade |
| Product | fabric os |
| Published | Oct 8, 2026 |
Stay Ahead of the Next One
Get instant alerts for brocade fabric os
Be the first to know when new unknown vulnerabilities affecting brocade fabric os are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Brocade / Fabric OS
0 < 10.0.1