CVE-2025-58382

A

vulnerability in the secure configuration of authentication and management services in Brocade Fabric OS before Fabric OS 9.2.1c2 could allow an authenticated, remote attacker with administrative credentials to execute arbitrary commands as root using “supportsave”, “seccertmgmt”, “configupload” command.

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:*
cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:*

History

06 Feb 2026, 20:17

Type Values Removed Values Added
References () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36849 - () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36849 - Vendor Advisory
First Time Broadcom fabric Operating System
Broadcom
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.2
CPE cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:*

03 Feb 2026, 02:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-03 02:16

Updated : 2026-02-06 20:17


NVD link : CVE-2025-58382

Mitre link : CVE-2025-58382

CVE.ORG link : CVE-2025-58382


JSON object : View

Products Affected
CWE
CWE-305

Authentication Bypass by Primary Weakness