CVE-2026-85421
Gravedad CVSS v4.0:
ALTA
Tipo:
CWE-306
Ausencia de autenticación para una función crítica
Fecha de publicación:
08/10/2026
Última modificación:
08/10/2026
Descripción
*** Pendiente de traducción *** A critical security vulnerability has been identified in Brocade ASCG versions before 3.5.0. The HTTPS service fails to properly enforce authentication or access control checks on incoming requests. An unauthenticated attacker with network access can issue control commands, alter cluster states, and modify system configurations, leading to a complete compromise of the streaming service control plane.
Impacto
Puntuación base 4.0
8.70
Gravedad 4.0
ALTA


