CVE-2025-7397

HIGH

Brocade Ascg < 3.3.0 - Cleartext Storage

Title source: rule
STIX 2.1

Description

A vulnerability in the ascgshell, of Brocade ASCG before 3.3.0 stores any command executed in the Command Line Interface (CLI) in plain text within the command history. A local authenticated user that can access sensitive information like passwords within the CLI history leading to unauthorized access and potential data breaches.

Scores

CVSS v3 7.1
EPSS 0.0002
EPSS Percentile 4.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-312
Status published
Products (1)
brocade/ascg < 3.3.0
Published Jul 17, 2025
Tracked Since Feb 18, 2026