Instituto Nacional de ciberseguridad. Sección Incibe
Instituto Nacional de Ciberseguridad. Sección INCIBE-CERT

CVE-2026-85422

Gravedad CVSS v4.0:
ALTA
Tipo:
CWE-798 Credenciales embebidas en el software
Fecha de publicación:
08/10/2026
Última modificación:
08/10/2026

Descripción

*** Pendiente de traducción *** A vulnerability in Brocade ASCG version before 3.5.0 could allow an attacker to obtain a static cryptographic key hardcoded into the software binaries to secure sensitive data at rest and to protect inter-node communication protocols. An attacker who extracts this key can decrypt stored management credentials or craft forged administrative synchronization messages.

Referencias a soluciones, herramientas e información