CVE-2025-58382

A vulnerability in the secure configuration of authentication and management services in Brocade Fabric OS before Fabric OS 9.2.1c2 could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands as root using “supportsave”, “seccertmgmt”, “configupload” command.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:*

History

06 Feb 2026, 20:17

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.2
CPE cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:*
References () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36849 - () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36849 - Vendor Advisory
First Time Broadcom fabric Operating System
Broadcom

03 Feb 2026, 02:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-03 02:16

Updated : 2026-02-06 20:17


NVD link : CVE-2025-58382

Mitre link : CVE-2025-58382

CVE.ORG link : CVE-2025-58382


JSON object : View

Products Affected

broadcom

  • fabric_operating_system
CWE
CWE-305

Authentication Bypass by Primary Weakness