CVE-2024-3596Patch(broadcom / brocade_sannav)

MEDIUMCVSS 9.0 · CRITICAL

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Patch broadcom brocade_sannav systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

RADIUS Protocol under RFC 2865 is susceptible to forgery attacks by a local attacker who can modify any valid Response (Access-Accept, Access-Reject, or Access-Challenge) to any other response using a chosen-prefix collision attack against MD5 Response Authenticator signature.

5.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-354CWE-924

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • brocade_sannav
  • fabric_operating_system
  • freeradius
  • sonicos

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 5 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 4 signals
  • Disclosure: 1 classified signal
  • Peaked 4d ago at 1 mentions (2026-02-10); latest day: 1
  • 5 total mentions across 5 days

Affected systems

Products
brocade_sannavfabric_operating_systemfreeradiussonicos

1 version affected across 4 products

Deep dive

Activity timeline5 mentions / 5d
00111Mentions · 2026-02-10: 1Mentions · 2026-06-09: 1Mentions · 2026-06-11: 1Mentions · 2026-06-20: 1Mentions · 2026-09-13: 1Active Exploitation · 2026-06-11: 1Patch / Workaround · 2026-06-09: 1Patch / Workaround · 2026-09-13: 1Technical Details · 2026-02-10: 1Technical Details · 2026-06-09: 1Technical Details · 2026-06-11: 1Technical Details · 2026-06-20: 102-1006-0906-1106-2009-13
Signal classification4 categories
Patch
240.0%
Disclosure
120.0%
Active Exploitation
120.0%
General
120.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-101
Disclosure1
2026-06-091
Patch1
2026-06-111
Active Exploitation1
2026-06-201
General1
2026-09-131
Patch1
Full discourse5 posts
  • shinya@shinya_dono
    Patch

    اپدیت نصف شبی: 1. بالاخره MA اضافه شد. میتونین واسه هر Peer جداگانه تعیین کنین که سرور MA پکت رو وریفای کنه یا نه. به صورت پیشفرض خاموشه ولی کسی دوست نداره BlastRADIUS Attack (CVE-2024-3596) بخوره پس بنظرم روشنش کنین. /

    Post summary

    The post recommends enabling MA verification per peer as a workaround to protect against BlastRADIUS Attack (CVE-2024-3596), noting the feature is disabled by default.

    10010117
    310 followersView on X
  • Grok@grok
    Disclosure

    حمله RADIUS Spoofing: نوعی حمله MITM که پروتکل RADIUS رو هدف می‌گیره. مهاجم با جعل پاسخ‌ها (مثل تغییر هش MD5) می‌تونه احراز هویت رو دور بزنه و دسترسی غیرمجاز بگیره. (CVE-2024-3596) حمله Traffic Flood: سیل ترافیک برای از کار انداختن سرور. UDP Flood: ارسال انبوه بسته‌های UDP به پورت‌های تصادفی. ICMP Flood: ارسال انبوه پینگ‌ها (ICMP echo) برای اشغال منابع. هر دو DDoS هستن.

    Post summary

    The text describes CVE-2024-3596 as a RADIUS spoofing vulnerability that can bypass authentication by modifying MD5 hashes, but it offers no evidence of active exploitation, patching, or PoC.

    1000065
    8.1M followersView on X
  • BREACHSPIDER@breachspider
    General

    [CVE Analysis] CVE-2024-3596: RADIUS Forgery (Blast-RADIUS) in Schneider Electric Modicon Managed Switches https://breachspider.com/intel/2026-06-20-cve-2024-3596-radius-forgery-blast-radius-in-schneider-elect #ICS #OTSecurity #SCADA #CriticalInfrastructure

    Post summary

    The tweet shares a link to an analysis of CVE‑2024‑3596, a RADIUS forging flaw in Schneider Electric switches, but it lacks details on exploits, patches, or active use.

    0000054
    2.3K followersView on X
  • Aviatrix Threat Research Center@aviatrixtrc
    Active Exploitation

    TRC analysis shows attackers exploiting CVE-2024-3596 in Schneider Electric switches can manipulate RADIUS authentication responses to escalate privileges and move laterally through industrial networks. Runtime segmentation helps contain such post-compromise activity across connected OT devices. #Vulnerability 🔗 Full TRC analysis: https://aviatrix.ai/threat-research-center/schneider-electric-modicon-switches-cve-2024-3596

    Post summary

    ATickers are actively exploiting CVE‑2024‑3596 in Schneider Electric switches, manipulating RADIUS authentication to gain higher privileges and move laterally through industrial networks, as detailed in the TRC analysis.

    0000033
    1.9K followersView on X
  • WindowsForum@windowsforum
    Patch

    🪟 CVE-2024-3596 is the classic “stop disabling security knobs” reminder. If RADIUS Message-Authenticator gets turned off, your OT network isn’t “simpler”—it’s just breakable. #Windows #Microsoft #CVE #Security https://windowsforum.com/threads/schneider-blastradius-cve-2024-3596-fix-switch-radius-message-authenticator.424153/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #Cve20243596 #IndustrialCybersecurity https://t.co/VdcnzxffNr

    Post summary

    The tweet points out CVE‑2024‑3596, warns against disabling the RADIUS Message‑Authenticator, and directs readers to a forum thread offering a fix or workaround.

    0000044
    1.2K followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
Appbroadcombrocade_sannav---
OSbroadcomfabric_operating_system---
Appfreeradiusfreeradius---
OSsonicwallsonicos---

Explore more