OFFLINE
Awaiting data
Security intelligence
MajorCritical vulnerability

CVE-2026-82368 (CVSS 8.7)

NVD · officialPublished Sep 23, 2026Risk 37/100EPSS 0.3%

Insecure access controls on internal service ports in Brocade SANnav versions before 3.0.1a allow local, non-administrative host users to communicate directly with backend management services. A local attacker can leverage this exposed access to transmit commands to connected Fabric OS switches under the security context of the SANnav management user.

CVSS
8.7
AV:NetworkAC:LowPR:LowUI:None

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source