PT-2024-3482 · Brocade · Brocade Sannav

Pierre Barre

·

Published

2024-04-17

·

Updated

2025-02-04

·

CVE-2024-29963

CVSS v3.1

3.8

Low

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Brocade SANnav versions prior to 2.3.1 Brocade SANnav version 2.3.0a
Description The issue is related to the use of hardcoded credentials in the software. An attacker could exploit this to gain unauthorized access to protected information. The software does not have access to remote Docker registries.
Recommendations For Brocade SANnav versions prior to 2.3.1, update to version 2.3.1 or later. For Brocade SANnav version 2.3.0a, update to version 2.3.1 or later. As a temporary workaround, consider restricting access to the Docker environment to minimize the risk of exploitation.

Fix

Using Hardcoded Credentials

Weakness Enumeration

Related Identifiers

BDU:2024-03783
CVE-2024-29963

Affected Products

Brocade Sannav