Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-87680

Quick assessment

Affected
Brocade Fabric OS
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Brocade Fabric OS 版本在 10.0.1 之前的 REST API 管理界面存在命令注入漏洞。攻击者可以通过构造特定的输入参数,以经过认证的用户身份执行任意系统命令。

CVSS 8.5 · High

Possible ATT&CK Techniques 1 AI

T1059 · Command and Scripting Interpreter
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-87680

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
A command injection vulnerability in the REST API management interface of Brocade Fabric OS versions before 10.0.1 allows an authenticated user to execute arbitrary system commands via crafted input parameters.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Brocade Fabric OS 0 ~ 10.0.1 -

II. Public POCs for CVE-2026-87680

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-87680

请登录查看更多情报信息。

Other References for CVE-2026-87680 (1)

Same Patch Batch · Brocade · 2026-10-08 · 15 CVEs total

CVE-2026-87684 8.7 HIGH Brocade Fabric<10.0.1 SNMP守护进程栈缓冲区溢出漏洞
CVE-2026-87683 8.6 HIGH Brocade Fabric OS堆缓冲区溢出漏洞
CVE-2026-87682 8.6 HIGH Brocade Fabric OS<10.0.1命令注入漏洞
CVE-2026-87679 8.5 HIGH Brocade Fabric OS<10.0.1堆溢出漏洞
CVE-2026-94578 7.5 HIGH Brocade Fabric OS授权逻辑漏洞
CVE-2026-87659 7.1 HIGH Brocade Fabric OS<10.0.1认证绕过漏洞
CVE-2026-87671 7.1 HIGH Brocade Fabric OS越界读取致DoS漏洞
CVE-2026-87681 7.1 HIGH Brocade Fabric OS<10.0.1访问控制绕过漏洞
CVE-2026-87678 6.9 MEDIUM Brocade Fabric OS<10.0.1注入漏洞
CVE-2026-87676 6.9 MEDIUM Brocade Fabric OS堆溢出致DoS
CVE-2026-87672 6.8 MEDIUM Brocade Fabric OS 信息泄露漏洞
CVE-2026-87686 5.3 MEDIUM Brocade Fabric OS 认证绕过与访问控制漏洞
CVE-2026-87670 5.1 MEDIUM Brocade Fabric OS授权逻辑漏洞
CVE-2026-87669 5.1 MEDIUM Brocade Fabric OS <10.0.1 REST API越权漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-87680

No comments yet


Leave a comment