# CVE-2025-58382

## Summary

- **CVE ID:** CVE-2025-58382
- **Severity:** HIGH
- **CVSS Score:** 8.5 (CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N)
- **CWE:** CWE-305
- **Published:** Feb 3, 2026
- **Last Modified:** Mar 13, 2026

## Description

A vulnerability in the secure configuration of authentication and 
management services in Brocade Fabric OS before Fabric OS 9.2.1c2 could 
allow an authenticated, remote attacker with administrative credentials 
to execute arbitrary commands as root using “supportsave”, 
“seccertmgmt”, “configupload” command.

## Affected Products

- Brocade — Fabric OS (before 9.2.1c2 and 9.2.2 through 9.2.2a)

## References

- [CNA](https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36849)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.63%
- **EPSS Percentile:** 48.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-10._