PT-2025-6824 · Brocade · Brocade Sannav

Published

2025-02-04

·

Updated

2025-11-18

·

CVE-2025-1053

CVSS v4.0

8.6

High

VectorAV:L/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N
Name of the Vulnerable Software and Affected Versions Brocade SANnav (affected versions not specified)
Description Under certain error conditions during SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access to the Brocade SANnav database could use the encryption key to obtain passwords used by Brocade SANnav.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insertion into Log File

Weakness Enumeration

Related Identifiers

BDU:2025-02081
CVE-2025-1053

Affected Products

Brocade Sannav