CVE-2025-7397

Severity CVSS v4.0:
MEDIUM
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
17/07/2025
Last modified:
02/02/2026

Description

A vulnerability in the ascgshell, of <br /> Brocade ASCG before 3.3.0 stores any command executed in the Command <br /> Line Interface (CLI) in plain text within the command history. A local <br /> authenticated user that can access sensitive information like passwords <br /> within the CLI history leading to unauthorized access and potential data<br /> breaches.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:brocade:ascg:*:*:*:*:*:*:*:* 3.3.0 (excluding)