Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Security update is provided in Brocade Fabric OS 9.2.2d and 10.0.1
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 08 Oct 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Persistent Denial of Service via Corrupted Apache Configuration in Brocade Fabric OS |
Thu, 08 Oct 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Brocade
Brocade fabric Os |
|
| Vendors & Products |
Brocade
Brocade fabric Os |
Thu, 08 Oct 2026 05:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Brocade Fabric OS versions before 9.2.2d and 10.0.0 through 10.0.0a1 directly accepts Apache configuration file data during service setup or re-initialization. An attacker capable of corrupting the configuration structure will prevent the web management service from starting or recovering during service bring-up, leading to a persistent Denial of Service (DoS) of the administrative web interface. | |
| Weaknesses | CWE-93 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: brocade
Published:
Updated: 2026-10-08T17:55:54.841Z
Reserved: 2026-09-08T22:51:12.105Z
Link: CVE-2026-87661
No data.
Status : Received
Published: 2026-10-08T05:17:05.297
Modified: 2026-10-08T18:18:29.613
Link: CVE-2026-87661
No data.
OpenCVE Enrichment
Updated: 2026-10-08T07:45:17Z
-
CWE-93
Improper Neutralization of CRLF Sequences ('CRLF Injection')