Privilege Escalation Vulnerability in Brocade Fabric OS
CVE-2026-94577

7.3HIGH

Key Information:

Vendor

Brocade

Status
Vendor
CVE Published:
8 October 2026

What is CVE-2026-94577?

A privilege escalation vulnerability has been identified in the internal Command-Line Interface (CLI) authorization handling mechanism of Brocade Fabric OS. This affects versions prior to 9.2.2d and versions 10.0.0 through 10.0.0a1. An authenticated user or local process, capable of manipulating the execution environment, may bypass Role-Based Access Control (RBAC) validation checks. Successful exploitation of this vulnerability could enable an attacker to elevate their privileges to that of a root user, posing significant security risks.

Affected Version(s)

Fabric OS 0 < 9.2.2d

Fabric OS 10.0.0 <= 10.0.0a1

References

CVSS V4

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.