Broadcom Brocade Ascg vulnerabilities
3 known vulnerabilities affecting broadcom/brocade_ascg.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2025-6391HIGHCVSS 7.1vbefore 3.3.02025-07-17
CVE-2025-6391 [HIGH] CWE-532 CVE-2025-6391: Brocade ASCG before 3.3.0 logs JSON
Web Tokens (JWT) in log files. An attacker with access to the l
Brocade ASCG before 3.3.0 logs JSON
Web Tokens (JWT) in log files. An attacker with access to the log files
can withdraw the unencrypted tokens with security implications, such as
unauthorized access, session hijacking, and information disclosure.
cvelistv5nvd
CVE-2025-7398HIGHCVSS 8.6vbefore 3.3.02025-07-17
CVE-2025-7398 [HIGH] CWE-326 CVE-2025-7398: Brocade ASCG before 3.3.0 allows for the use of medium strength cryptography algorithms on internal
Brocade ASCG before 3.3.0 allows for the use of medium strength cryptography algorithms on internal ports ports 9000 and 8036.
cvelistv5nvd
CVE-2025-7397MEDIUMCVSS 6.8vbefore 3.3.02025-07-17
CVE-2025-7397 [MEDIUM] CWE-312 CVE-2025-7397: A vulnerability in the ascgshell, of
Brocade ASCG before 3.3.0 stores any command executed in the C
A vulnerability in the ascgshell, of
Brocade ASCG before 3.3.0 stores any command executed in the Command
Line Interface (CLI) in plain text within the command history. A local
authenticated user that can access sensitive information like passwords
within the CLI history leading to unauthorized access and potential data
breaches.
cvelistv5nvd