PT-2025-6622 · Brocade · Brocade Sannav

Published

2025-02-13

·

Updated

2025-08-26

·

CVE-2024-2240

CVSS v4.0

8.6

High

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Brocade SANnav versions prior to 2.3.1b
Description The Docker daemon in Brocade SANnav runs without auditing, which could allow a remote authenticated attacker to execute various attacks.
Recommendations For versions prior to 2.3.1b, update to version 2.3.1b or later to resolve the issue. As a temporary workaround, consider restricting access to the Docker daemon to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-02083
CVE-2024-2240

Affected Products

Brocade Sannav