PT-2026-5734 · Brocade · Brocade Sannav
CVE-2025-12773
·
Publicado
2026-02-03
·
Atualizado
2026-03-03
CVSS v4.0
7.1
Alta
| Vetor | AV:L/AC:L/AT:N/PR:H/UI:P/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H |
Name of the Vulnerable Software and Affected Versions
Brocade SANnav versions prior to 2.4.0a
Description
A flaw exists in the update-reports-purge-settings.sh script logging for Brocade SANnav that could permit the retrieval of the SANnav database password from system audit logs. A remote authenticated attacker with access to these logs could potentially gain access to the database password.
Recommendations
Update to version 2.4.0a or later.
Correção
Generation of Error Message Containing Sensitive Information
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Brocade Sannav