Brocade Communications Systems LLC, a Broadcom Company

First CVE: Oct 31, 2016Active for: 10 years
174
CVEs Published
More CVEs Published than 77% of tracked CNAs
15.8
Avg CVEs / Year
More Avg CVEs / Year than 63% of tracked CNAs
7.0
Avg CVSS Score
Higher Avg CVSS Score than 43% of tracked CNAs
0.6%
In CISA KEV
Higher KEV Rate than 86% of tracked CNAs

Self-Reporting Analysis

Of all the CVEs published by Brocade Communications Systems LLC, a Broadcom Company as a CNA, 8.0% affect products that Brocade Communications Systems LLC, a Broadcom Company develops as a vendor.

92.0%
Self-reported: 14Third-party: 160

Of all the CVEs published that affect products developed by Brocade Communications Systems LLC, a Broadcom Company, 46.7% are self-published by Brocade Communications Systems LLC, a Broadcom Company as a CNA.

46.7%
53.3%
Self-published: 14Published by other CNAs: 16

Trends Over Time

The number and severity of CVEs published by Brocade Communications Systems LLC, a Broadcom Company over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 31, 2016
9 years ago
Most Recent CVE
Mar 3, 2026
143 days ago

Top CVEs

All CVEs published by Brocade Communications Systems LLC, a Broadcom Company as a CNA, regardless of affected vendor or product.

174 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Brocade Fabric OS versions starting with 9.1.0 have root access removed, however, a local user with admin privilege can potentially execute arbitrary code with full root privileges
Apr 24, 20256.762YESNO
A vulnerability in Brocade Network Advisor Versions before 14.3.1 could allow an unauthenticated, remote attacker to log in to the JBoss Administration interface of an affected sys
Jan 22, 20198.139NOYES
A vulnerability in Brocade Network Advisor Version Before 14.3.1 could allow an unauthenticated, remote attacker to log in to the JBoss Administration interface of an affected syst
Jun 29, 20209.832NONO
A vulnerability in Brocade Fabric OS software v9.1.1, v9.0.1e, v8.2.3c, v7.4.2j, and earlier versions could allow a remote unauthenticated attacker to execute on a Brocade Fabric O
Dec 8, 20229.831NONO
A Vulnerability in Brocade Network Advisor versions before 14.1.0 could allow a remote unauthenticated attacker to execute arbitray code. The vulnerability could also be exploited
Jan 22, 20199.831NONO
A Directory Traversal vulnerability in CliMonitorReportServlet in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote attackers to read a
Jan 14, 20177.531NONO
A Directory Traversal vulnerability in servlet SoftwareImageUpload in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote attackers to wr
Jan 14, 20177.531NONO
A Directory Traversal vulnerability in DashboardFileReceiveServlet in the Brocade Network Advisor versions released prior to and including 14.0.2 could allow remote attackers to up
Jan 14, 20179.831NONO
Remote code execution (RCE) vulnerability in Brocade Fabric OS after v9.0 and before v9.2.0 could allow an attacker to execute arbitrary code and use this to gain root access to th
Apr 4, 20249.830NONO
Brocade Fabric OS before Brocade Fabric OS v8.2.1c, v8.1.2h, and all versions of Brocade Fabric OS v8.0.x and v7.x contain documented hard-coded credentials, which could allow atta
Feb 21, 20229.830NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA174 CVEs
Severity distribution among all CVEs352,231 CVEs
LowMediumHighCritical
Attack Vector
Local60 (34.5%)
Network109 (62.6%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network5 (2.9%)
Attack Complexity
Low167 (96.0%)
High7 (4.0%)
Unknown0 (0.0%)
User Interaction
None162 (93.1%)
Unknown0 (0.0%)
Required12 (6.9%)
Privileges Required
Low78 (44.8%)
High26 (14.9%)
None70 (40.2%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (174 CVEs).

CISA KEV
1 CVE
0.6% of CVEs· 86th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
0.6% of CVEs· 78th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID published by Brocade Communications Systems LLC, a Broadcom Company as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Brocade Communications Systems LLC, a Broadcom Company as a CNA — matched by CVE ID, not by organization name.

Top Affected Vendors

Top Affected Products

Top CWEs