Logging Vulnerability in Brocade ASCG Affects User Security
CVE-2025-6391
7.1HIGH
What is CVE-2025-6391?
The Brocade ASCG application, prior to version 3.3.0, has a critical issue where it logs JSON Web Tokens (JWT) into log files. This situation allows an unauthorized attacker who has access to these logs to extract unencrypted tokens, potentially leading to unauthorized access, session hijacking, and sensitive information disclosure. It is essential for users of Brocade ASCG to upgrade to the latest version to mitigate the risk associated with this vulnerability.
Affected Version(s)
Brocade ASCG before 3.3.0