OS Command Injection Vulnerability in Brocade Fabric OS
CVE-2026-87677

5.4MEDIUM

Key Information:

Vendor

Brocade

Status
Vendor
CVE Published:
8 October 2026

What is CVE-2026-87677?

A vulnerability in the account management subsystem of Brocade Fabric OS allows an attacker to exploit malformed account names during account deletion processes. This triggers embedded shell metacharacters, enabling unauthorized command execution within the system. Proper validation and sanitization measures are crucial to prevent such vulnerabilities and protect sensitive administrative operations.

Affected Version(s)

Fabric OS 0 < 9.2.2d

Fabric OS 10.0.0 <= 10.0.0a1

References

CVSS V4

Score:
5.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.