LOW
Spectrum basic authentication in use
Published Jan 12, 2026
2.3
LOWCVSS 4.0
EPSS 0.24%
Description
Insufficiently Protected Credentials vulnerability in Broadcom DX NetOps Spectrum on Windows, Linux allows Sniffing Attacks.This issue affects DX NetOps Spectrum: 24.3.13 and earlier.
Affected products
-
- Version 24.3.13 and earlierStatusaffectedConstraints-
- Version 25.4.1 and laterStatusunaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | |||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Broadcom | DX NetOps Spectrum | unaffected |
|
AND
- < 25.4.1
Running on/with
OR
- n/a
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (1)
- https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36756 vendor-advisoryVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36756 | vendor-advisoryVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ca
Published Jan 12, 2026
Updated Jan 12, 2026
Reserved Dec 31, 2025
Link CVE-2025-69271
CISA Vulnrichment
Updated Jan 12, 2026