PT-2026-107822 · Brocade · Active Support Connectivity Gateway

CVE-2023-5648

·

Published

2026-10-08

·

Updated

2026-10-08

CVSS v4.0

6.5

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:L/SC:H/SI:H/SA:H
In Brocade ASCG before Brocade ASCG v3.0, several security-related HTTP Headers were missing in various Brocade ASCG URL paths, aiding unauthenticated attackers to perform attacks such as Cross-Site Scripting, Clickjacking, Information disclosure, and more.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-5648

Affected Products

Active Support Connectivity Gateway