User Input Processing Flaw in Brocade ASCG by Broadcom
CVE-2026-85486

8.6HIGH

Key Information:

Vendor

Brocade

Vendor
CVE Published:
8 October 2026

What is CVE-2026-85486?

The Brocade ASCG version prior to 3.5.0 contains a vulnerability that allows for improper evaluation of user-submitted configuration forms. This oversight enables authenticated users to input malicious data that can be executed on the server, potentially allowing attackers to gain control over the application environment. Implementing timely updates is crucial to mitigate the risk posed by this input processing flaw.

Affected Version(s)

Brocade Active Support Connectivity Gateway 0 < 3.5.0

References

CVSS V4

Score:
8.6
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.