Impact
The vulnerability arises from improper sanitization of file paths contained within support bundle archives processed by Brocade Active Support Connectivity Gateway (ASCG) releases before version 3.5.0. Because the application does not neutralize path traversal sequences in archive entries before extracting them, an attacker could inject archive files that contain files referencing privileged filesystem locations. This flaw allows the injection of files that overwrite system or program files, leading to potential remote code execution. The weakness is a classic path traversal flaw, corresponding to CWE‑22.
Affected Systems
Brocade Active Support Connectivity Gateway (ASCG) products deployed before the 3.5.0 release are affected. No later releases, notably 3.5.0 and above, contain the fix.
Risk and Exploitability
The CVSS score of 7.7 indicates a high severity. Because the flaw is exploitable by an unauthenticated remote user who can send or intercept archive files that the gateway ingests, the risk is significant. EPSS data is not available, and the issue is not listed in CISA’s KEV catalog, but the combination of high CVSS and the remote, unauthenticated nature of the attack vector suggests that the vulnerability could be abused in targeted or opportunistic attacks.
OpenCVE Enrichment