A vulnerability in the secure configuration of authentication and
management services in Brocade Fabric OS before Fabric OS 9.2.1c2 could
allow an authenticated, remote attacker with administrative credentials
to execute arbitrary commands as root using “supportsave”,
“seccertmgmt”, “configupload” command.
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36849 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
06 Feb 2026, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.2 |
| CPE | cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* | |
| References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36849 - Vendor Advisory | |
| First Time |
Broadcom fabric Operating System
Broadcom |
03 Feb 2026, 02:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-03 02:16
Updated : 2026-02-06 20:17
NVD link : CVE-2025-58382
Mitre link : CVE-2025-58382
CVE.ORG link : CVE-2025-58382
JSON object : View
Products Affected
broadcom
- fabric_operating_system
CWE
CWE-305
Authentication Bypass by Primary Weakness
