Brocade Fabric OS Information Disclosure Vulnerability via Insecurely Stored Bash History

Vulnerability

An information disclosure vulnerability exists in Brocade Fabric OS versions prior to 9.2.1c2, 9.2.2 through 9.2.2a, and 10.0.0. This vulnerability allows an authenticated, local attacker with access to the Bash shell to retrieve insecurely stored file contents, including command history.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information, such as the history of executed commands, which could be used to infer other actions or access within the system.

Remediation

Users can upgrade to Brocade Fabric OS versions 10.0.0a, 9.2.2b, or 9.2.1c2 to address this vulnerability.

Added: Feb 3, 2026, 4:20 AM
Updated: Feb 3, 2026, 4:20 AM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
2.5
exploitability
3.5
remediation
7.7
relevance
2.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.