A path transversal vulnerability in
Brocade Fabric OS 9.1.0 through 9.2.2 could allow a local admin user to
gain access to files outside the intended directory potentially leading
to the disclosure of sensitive information.
Note: Admin level privilege is required on the switch in order to exploit
References
| Link | Resource |
|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35814 | Vendor Advisory |
Configurations
History
06 Feb 2026, 14:51
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35814 - Vendor Advisory | |
| CPE | cpe:2.3:o:broadcom:fabric_operating_system:*:*:*:*:*:*:*:* | |
| First Time |
Broadcom fabric Operating System
Broadcom |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 2.3 |
Information
Published : 2025-06-19 03:15
Updated : 2026-02-06 14:51
NVD link : CVE-2025-4661
Mitre link : CVE-2025-4661
CVE.ORG link : CVE-2025-4661
JSON object : View
Products Affected
broadcom
- fabric_operating_system
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
