A vulnerability in the ascgshell, of
Brocade ASCG before 3.3.0 stores any command executed in the Command
Line Interface (CLI) in plain text within the command history. A local
authenticated user that can access sensitive information like passwords
within the CLI history leading to unauthorized access and potential data
breaches.
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35949 | Vendor Advisory |
Configurations
History
02 Feb 2026, 14:55
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35949 - Vendor Advisory | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.1 |
| CPE | cpe:2.3:a:brocade:ascg:*:*:*:*:*:*:*:* | |
| First Time |
Brocade
Brocade ascg |
22 Jul 2025, 13:06
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
17 Jul 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-07-17 22:15
Updated : 2026-02-02 14:55
NVD link : CVE-2025-7397
Mitre link : CVE-2025-7397
CVE.ORG link : CVE-2025-7397
JSON object : View
Products Affected
brocade
- ascg
CWE
CWE-312
Cleartext Storage of Sensitive Information
