OFFLINE
Awaiting data
Security intelligence
MajorCritical vulnerability

CVE-2026-87667 (CVSS 8.4)

NVD · officialPublished Oct 8, 2026Risk 37/100

An argument injection vulnerability exists in the configuration management command-line utility of Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1. When executing configuration viewing commands with search pattern filters, the utility fails to sanitize user-supplied search string options before passing them to internal search commands. An authenticated user with low-privilege administrative access can exploit this vulnerability to read arbitrary files on the local operating system, including sensitive configuration files, system password hashes and system secrets.

CVSS
8.4
AV:AdjacentAC:LowPR:HighUI:None

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source