Cryptographic Key Exposure in Brocade ASCG Software
CVE-2026-85422
8.4HIGH
What is CVE-2026-85422?
A vulnerability in Brocade ASCG versions prior to 3.5.0 allows attackers to access a hardcoded static cryptographic key embedded in the software binaries. This exposure can lead to the decryption of sensitive data, including stored management credentials. Additionally, an attacker could potentially fabricate unauthorized administrative synchronization messages. Organizations using affected versions are urged to upgrade to mitigate these risks.
Affected Version(s)
Brocade Active Support Connectivity Gateway 0 < 3.5.0