CVE-2025-1976

Severity CVSS v4.0:
HIGH
Type:
CWE-94 Code Injection
Publication date:
24/04/2025
Last modified:
29/04/2025

Description

Brocade Fabric OS versions starting with 9.1.0 have root access removed, however, a local user with admin privilege can potentially execute arbitrary code with full root privileges on Fabric OS versions 9.1.0 through 9.1.1d6.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* 9.1.0 (including) 9.1.1d7 (excluding)