Description
An Improper Input Validation vulnerability for the registered case credentials in Brocade ASCG before v3.0 could allow a local authenticated user to provide invalid inputs like special characters leading to a Denial of Service (DoS) when collecting “supportsave” from a Brocade Switch.
Published: 2026-10-08
Score: 6.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

Vendor Solution

Security update provided in Brocade ASCG 3.0

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 09 Oct 2026 07:30:00 +0000

Type Values Removed Values Added
First Time appeared Broadcom
Broadcom brocade Active Support Connectivity Gateway
Vendors & Products Broadcom
Broadcom brocade Active Support Connectivity Gateway

Thu, 08 Oct 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 08 Oct 2026 06:45:00 +0000

Type Values Removed Values Added
Title Impaired Input Validation Causing Local Authenticated Denial of Service in Brocade ASCG

Thu, 08 Oct 2026 05:15:00 +0000

Type Values Removed Values Added
Description An Improper Input Validation vulnerability for the registered case credentials in Brocade ASCG before v3.0 could allow a local authenticated user to provide invalid inputs like special characters leading to a Denial of Service (DoS) when collecting “supportsave” from a Brocade Switch.
Weaknesses CWE-20
References
Metrics cvssV4_0

{'score': 6.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Broadcom Brocade Active Support Connectivity Gateway
cve-icon MITRE

Status: PUBLISHED

Assigner: brocade

Published:

Updated: 2026-10-08T17:55:25.967Z

Reserved: 2023-10-19T01:33:10.047Z

Link: CVE-2023-5649

cve-icon Vulnrichment

Updated: 2026-10-08T15:14:44.039Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-10-08T05:17:03.970

Modified: 2026-10-08T20:08:45.857

Link: CVE-2023-5649

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-09T07:15:09Z

Weaknesses
  • CWE-20

    Improper Input Validation