vciy

CVEs we hold for Brocade

Records whose assigning authority named Brocade as the affected vendor. Newest identifiers first, capped at 200.

CVE-2026-0869Application User custom defined accounts are not properly password protected in Brocade ASCG 3.4.0Brocade ASCG
CVE-2026-0383Information disclosure in Brocade Fabric OS before 9.2.1c2, 9.2.2 through 9.2.2a and 10.0.0Brocade Fabric OS
CVE-2025-9711Privilege escalation in Brocade Fabric OS before 9.2.1c3, and 9.2.2 though 9.2.2bBrocade Fabric OS
CVE-2025-58383Privilege escalation via bind command in Brocade Fabric OSBrocade Fabric OS
CVE-2025-58382Privilege escalation in Brocade Fabric before 9.2.1c2 and 9.2.2 through 9.2.2aBrocade Fabric OS
CVE-2025-58381Directory transversal vulnerability in Brocade Fabric OS before 9.2.1c2 and 9.2.2 through 9.2.2a using various shell…Brocade Fabric OS
CVE-2025-58380Directory transversal vulnerability in Brocade Fabric OS before 9.2.1 using grep commandBrocade Fabric OS
CVE-2025-58379Password Exposure in Brocade Fabric OSBrocade Fabric OS
CVE-2025-4661Path transversal vulnerability potentially leading to sensitive information disclosureBrocade Fabric OS
CVE-2025-1976Code injection exposure in Fabric OS 9.1.0 through 9.1.1d6Brocade Fabric OS
CVE-2025-12774SQL queries with sensitive information printed in logs with Brocade SANnav before 3.0Brocade SANnav
CVE-2025-12773Plain password is generated in the audit logs while executing update-reports-purge-settings.sh script with Brocade…Brocade SANnav
CVE-2025-12772Plaintext Switch admin login password is seen in Brocade SANnav support saveBrocade SANnav
CVE-2025-12680Brocade SANnav DataBase plaintext password is logged in failover logs (CVE-2025-12680)Brocade SANnav
CVE-2025-12679Plain text pbe key visible in audit log during Brocade SANnav migration from 2.4.0a to 3.0.0Brocade SANnav
CVE-2025-1053Brocade SANnav encryption key is logged in the debug logsBrocade SANnav
CVE-2024-7517Privileged escalation via crafted use of portcfg commandBrocade Fabric OS
CVE-2024-7516Brocade Fabric OS before 9.2.2 does not enforce strict host key checkingBrocade Fabric OS
CVE-2024-5462Brocade Fabric OS may capture SNMP Passwords in clear textBrocade Fabric OS
CVE-2024-5461Command or parameter injection via unique embedded switch SNMP commands.Brocade Fabric OS
CVE-2024-5460Brocade Fabric OS versions prior to v9.0 have default community stringsBrocade Fabric OS
CVE-2024-4282Weak TLS Ciphers on Brocade SANnav OVA SSH port 22Brocade SANnav
CVE-2024-4173SANnav versions exposes Kafka in the wan interface.Brocade SANnav
CVE-2024-4161Syslog traffic sent in clear-textBrocade SANnav
CVE-2024-4159Protection mechanismsBrocade SANnav
CVE-2024-29969TLS/SSL weak message authentication code ciphers are added by default for port 18082Brocade SANnav
CVE-2024-29968SQL Table names, column names, and SQL queries are collected in DR standby SupportsaveBrocade SANnav
CVE-2024-29967In Brocade SANnav before v2.31 and v2.3.0a, it was observed that Docker instances inside the appliance have insecure…Brocade SANnav
CVE-2024-29966hard-coded credentials in the documentation that appear as the appliance root passwordBrocade SANnav
CVE-2024-29965Insecure backupBrocade SANnav
CVE-2024-29964Brocade SANnav versions before v2.3.0a do not correctly set permissions on files, including docker filesBrocade SANnav
CVE-2024-29963Brocade SANnav contains hardcoded TLS keys used by DockerBrocade SANnav
CVE-2024-29962Insecure file permission setting that makes files world-readableBrocade SANnav
CVE-2024-29961supply-chain attack riskBrocade SANnav
CVE-2024-29960Identical SSH keys utilized inside the OVA image (CVE-2024-29960)Brocade SANnav
CVE-2024-29959Brocade Fabric OS switch encrypted passwords in the Brocade SANnav Standby node's support saveBrocade SANnav
CVE-2024-29958Encryption key in the console when a privileged user executes the script to replace the Brocade SANnav Management…Brocade SANnav
CVE-2024-29957Encryption key is stored in the DR log filesBrocade SANnav
CVE-2024-29956cleartext password in supportsave logs when a user schedules a switch Supportsave from Brocade SANnavBrocade SANnav
CVE-2024-29955Insertion of Sensitive Information into Brocade SANnav Log FileBrocade SANnav
CVE-2024-29954password management API prints sensitive information in log filesBrocade Fabric OS
CVE-2024-29953Encoded session passwords on session storage for Virtual Fabric platformsBrocade Fabric OS
CVE-2024-29952Clear text storage of sensistive information by manipulating command variablesBrocade SANnav
CVE-2024-29951Brocade SANnav has weak encryption in internal SSH portsBrocade SANnav
CVE-2024-29950Brocade SANnav before v2.3.1, v2.3.0a uses weak encryptionBrocade SANnav
CVE-2024-2860no title heldBrocade SAnnav
CVE-2024-2859By default, SANnav OVA is shipped with root user login enabled (CVE-2024-2859)Brocade SANnav
CVE-2024-2240Docker implementation in Brocade SANnav is missing Audit Rules.Brocade SANnav
CVE-2024-1509Brocade ASCG 3.2.0 web interface does not enforce HSTS, as defined by RFC 6797 for ports 8030 and 8100Brocade ASCG
CVE-2024-10405Weak TLS Ciphers on Brocade SANnav port 443 & 18082Brocade SANnav
CVE-2024-10404Clear text password seen in switch-asset-collectors-mw in Brocade SANnav supportsaveBrocade SANnav
CVE-2024-10403SFTP/FTP password could be captured in plain text in Supportsave generated from SANnavBrocade Fabric OS
CVE-2023-5973Truncated port nameBrocade Fabric OS
CVE-2023-4163Possible buffer overflow in portcfgfportbuffers in Brocade Fabric OSBrocade Fabric OS
CVE-2023-4162Segmentation fault in Brocade Fabric OS after Brocade Fabric OS v9.0Brocade Fabric OS
CVE-2023-3489firmwaredownload command could log servers passwords in clear textBrocade Fabric OS
CVE-2023-3454no title heldBrocade Fabric OS
CVE-2023-31928XSS vulnerability in Brocade WebtoolsBrocade Fabric OS
CVE-2023-31927An information disclosure in the web interface of Brocade Fabric OSBrocade Fabric OS
CVE-2023-31926Arbitrary File Overwrite using less commandBrocade Fabric OS
CVE-2023-31925Storage of clear text password in Brocade SANnavBrocade SANnav
CVE-2023-31432Privilege issues in multiple commandsBrocade Fabric OS
CVE-2023-31431A buffer overflow vulnerability in “diagstatus” commandBrocade Fabric OS
CVE-2023-31430buffer overflow vulnerability in “secpolicydelete” commandBrocade Fabric OS
CVE-2023-31429Multiple commands print sensitive information in the terminalBrocade Fabric OS
CVE-2023-31428CLI allows upload or transfer files of dangerous typesBrocade Fabric OS
CVE-2023-31427Knowledge of full path nameBrocade Fabric OS
CVE-2023-31426scp, sftp, ftp servers passwords in supportsaveBrocade Fabric OS
CVE-2023-31425Privilege escalation via the fosexec commandBrocade Fabric OS
CVE-2023-31424Web authentication and authorization bypassBrocade SANnav
CVE-2023-31423Possible information exposure through log file vulnerabilityBrocade SANnav
CVE-2022-43937Brocade SANnav Information Disclosure VulnerabilityBrocade SANnav
CVE-2022-43936Brocade Fabric OS switch passwords when debugging is enabledBrocade SANnav
CVE-2022-43935Switch passwords and authorization IDs are printed in the embedded MLS DB fileBrocade SANnav
CVE-2022-43934Weak Key-exchange algorithmsBrocade SANnav
CVE-2022-43933configuration secrets are logged in support-saveBrocade SANnav
CVE-2022-33187Brocade SANnav before v2.2.1 logs usernames and encoded passwords in debug-enabled logsBrocade SANnav
CVE-2022-33186no title heldn/a Brocade Fabric OS
CVE-2022-33185no title heldn/a Brocade Fabric OS
CVE-2022-33184no title heldn/a Brocade Fabric OS
CVE-2022-33183no title heldn/a Brocade Fabric OS
CVE-2022-33182no title heldn/a Brocade Fabric OS
CVE-2022-33181no title heldn/a Brocade Fabric OS
CVE-2022-33180no title heldn/a Brocade Fabric OS
CVE-2022-33179no title heldn/a Brocade Fabric OS
CVE-2022-33178no title heldn/a Brocade Fabric OS
CVE-2022-28170no title heldn/a Brocade Fabric OS
CVE-2022-28169no title heldn/a Brocade Fabric OS
CVE-2022-28168no title heldn/a Brocade SANnav
CVE-2022-28167no title heldn/a Brocade SANnav
CVE-2022-28166no title heldn/a Brocade SANnav
CVE-2022-28165no title heldn/a Brocade SANNav
CVE-2022-28164no title heldn/a Brocade SANNav
CVE-2022-28163no title heldn/a Brocade SANNav
CVE-2022-28162no title heldn/a Brocade SANNav
CVE-2022-28161no title heldn/a Brocade SANNav
CVE-2021-27798privileged directory transversal.in Brocade Fabric OS versions 7.4.1.x and 7.3.xBrocade Fabric OS
CVE-2021-27797no title heldn/a Brocade Fabric OS
CVE-2021-27796no title heldn/a Brocade Fabric OS
CVE-2021-27795License forgery in Brocade Fabric OS (FOS) hardware platforms running any version of Brocade Fabric OS software,Brocade Switches
CVE-2021-27794no title heldn/a Brocade Fabric OS
CVE-2021-27793no title heldn/a Brocade Fabric OS
CVE-2021-27792no title heldn/a Brocade Fabric OS
CVE-2021-27791no title heldn/a Brocade Fabric OS
CVE-2021-27790no title heldn/a Brocade Fabric OS
CVE-2021-27789no title heldn/a Brocade Fabric OS
CVE-2020-15388no title heldn/a Brocade Fabric OS
CVE-2020-15387no title heldn/a Brocade SANnav & Brocade Fabric OS
CVE-2020-15386no title heldn/a Brocade Fabric OS
CVE-2020-15385no title heldn/a Brocade SANnav
CVE-2020-15384no title heldn/a Brocade SANnav
CVE-2020-15383no title heldn/a Brocade Fabric OS
CVE-2020-15382no title heldn/a Brocade SANnav
CVE-2020-15381no title heldn/a Brocade SANnav
CVE-2020-15380no title heldn/a Brocade SANnav
CVE-2020-15379no title heldn/a Brocade SANnav
CVE-2020-15378no title heldn/a Brocade SANnav
CVE-2020-15377no title heldn/a Brocade SANnav
CVE-2020-15376no title heldn/a Brocade Fabric OS
CVE-2020-15375no title heldn/a Brocade Fabric OS
CVE-2020-15374no title heldn/a Brocade Fabric OS
CVE-2020-15373no title heldn/a Brocade Fabric OS
CVE-2020-15372no title heldn/a Brocade Fabric OS
CVE-2020-15371no title heldn/a Brocade Fabric OS
CVE-2020-15370no title heldn/a Brocade Fabric OS
CVE-2020-15369no title heldn/a Brocade Fabric OS
CVE-2019-16212no title heldn/a Brocade SANnav
CVE-2019-16211no title heldn/a Brocade SANnav
CVE-2019-16210no title heldBrocade SANnav
CVE-2019-16209no title heldBrocade SANnav
CVE-2019-16208no title heldBrocade SANnav
CVE-2019-16207no title heldBrocade SANnav
CVE-2019-16206no title heldBrocade SANnav
CVE-2019-16205no title heldBrocade SANnav
CVE-2019-16204no title heldBrocade Fabric OS
CVE-2019-16203no title heldBrocade Fabric OS
CVE-2018-6449no title heldn/a Brocade Fabric OS
CVE-2018-6448no title heldn/a Brocade Fabric OS
CVE-2018-6447no title heldn/a Brocade Fabric OS
CVE-2018-6446no title heldn/a Brocade Network Advisor
CVE-2018-6445no title heldBrocade Network Advisor
CVE-2018-6444no title heldBrocade Network Advisor
CVE-2018-6443no title heldBrocade Network Advisor
CVE-2018-6442no title heldBrocade Fabric OS
CVE-2018-6441no title heldBrocade Fabric OS
CVE-2018-6440no title heldBrocade Fabric OS
CVE-2018-6439no title heldBrocade Fabric OS
CVE-2018-6438no title heldBrocade Fabric OS
CVE-2018-6437no title heldBrocade Fabric OS
CVE-2018-6436no title heldBrocade Fabric OS
CVE-2018-6435no title heldBrocade Fabric OS
CVE-2018-6434no title heldBrocade Fabric OS
CVE-2018-6433no title heldBrocade Fabric OS
CVE-2017-6230no title heldBrocade Communications Systems, Inc. Ruckus Networks Solo…
CVE-2017-6229no title heldBrocade Communications Systems, Inc. Ruckus Networks…
CVE-2017-6227no title heldBrocade FABRIC OS
CVE-2017-6225no title heldBrocade FABRIC OS
CVE-2017-6224no title heldBrocade Communications Systems, Inc. Zone Director…
CVE-2017-6223no title heldBrocade Communications Systems, Inc. Zone Director…
CVE-2016-8209no title heldBrocade CES/CER on NetIron
CVE-2016-8207no title heldn/a Brocade Network Advisor versions released prior to and…
CVE-2016-8206no title heldn/a Brocade Network Advisor versions released prior to and…
CVE-2016-8205no title heldn/a Brocade Network Advisor versions released prior to and…
CVE-2016-8204no title heldn/a Brocade Network Advisor versions released prior to and…
CVE-2016-8203no title heldn/a Brocade MLX running on NetIron OS All Brocade MLX Line…
CVE-2016-8202no title heldBrocade Fabric OS (FOS).
CVE-2016-8201no title heldn/a Brocade Virtual Traffic Manager versions released prior…

167 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.

Everything on this page is free. Public data. Withholding it protects nothing.