OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-82369

HIGH · CVSS 8.6 EPSS 0.51%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

The Brocade SANnav CLI scripting component is vulnerable due to insufficient input sanitization of shell metacharacters, allowing authenticated users to escape restricted execution contexts on managed switches. This flaw enables attackers with command execution permissions to execute unauthorized shell commands, bypassing security controls and gaining full administrative access to the switches. Organizations using Brocade SANnav versions prior to 3.0.1a should prioritize patching this vulnerability to mitigate the risk of unauthorized access and potential network compromise.

CVE
CVE-2026-82369
Severity
HIGH
CVSS
8.6
EPSS
0.51%

Original NVD Description

Insufficient input sanitization of shell metacharacters in the Brocade SANnav CLI scripting component permits authenticated users to break out of restricted execution contexts on managed switches. An attacker with command execution permissions can leverage this flaw to run unauthorized shell commands across target fabric switches, bypassing command allow-lists and obtaining full administrative switch access. This vulnerability affects all Brocade SANnav versions before 3.0.1a.