Brocade

Sannav

12 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.01%
  • Veröffentlicht 03.02.2026 02:16:06
  • Zuletzt bearbeitet 03.02.2026 16:44:03

A vulnerability in the migration script for Brocade SANnav before 3.0 could allow the collection of database sql queries in the SANnav support save file. An attacker with access to Brocade SANnav supportsave file, could open the file and then obtain...

  • EPSS 0.04%
  • Veröffentlicht 03.02.2026 01:15:57
  • Zuletzt bearbeitet 03.02.2026 16:44:03

A vulnerability in update-reports-purge-settings.sh script logging for Brocade SANnav before 2.4.0a could allow the collection of SANnav database password in the system audit logs. The vulnerability could allow a remote authenticated attacker with ac...

  • EPSS 0.01%
  • Veröffentlicht 02.02.2026 23:15:58
  • Zuletzt bearbeitet 03.02.2026 16:44:36

A vulnerability in Brocade SANnav before 2.4.0b prints the Password-Based Encryption (PBE) key in plaintext in the system audit log file. The vulnerability could allow a remote authenticated attacker with access to the audit logs to access the pbe...

  • EPSS 0.01%
  • Veröffentlicht 02.02.2026 23:15:58
  • Zuletzt bearbeitet 03.02.2026 16:44:36

Brocade SANnav before Brocade SANnav 2.4.0b logs database passwords in clear text in the standby SANnav server, after disaster recovery failover. The vulnerability could allow a remote authenticated attacker with admin privilege able to access the S...

  • EPSS 0.04%
  • Veröffentlicht 02.02.2026 23:15:58
  • Zuletzt bearbeitet 03.02.2026 16:44:03

Brocade SANnav before 2.4.0b logs the Brocade Fabric OS Switch admin password on the SANnav support save logs. When OOM occurs on a Brocade SANnav server, the call stack trace for the Brocade switch is also collected in the heap dump file which cont...

  • EPSS 0.07%
  • Veröffentlicht 15.02.2025 00:15:13
  • Zuletzt bearbeitet 26.08.2025 19:44:01

Brocade SANnav before SANnav 2.3.1b enables weak TLS ciphers on ports 443 and 18082. In case of a successful exploit, an attacker can read Brocade SANnav data stream that includes monitored Brocade Fabric OS switches performance data, port status,...

  • EPSS 0.11%
  • Veröffentlicht 15.02.2025 00:15:13
  • Zuletzt bearbeitet 26.08.2025 19:42:18

Brocade SANnav OVA before SANnav 2.3.1b enables SHA1 deprecated setting for SSH for port 22.

  • EPSS 0.31%
  • Veröffentlicht 14.02.2025 05:15:11
  • Zuletzt bearbeitet 26.08.2025 19:48:30

Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability could allow a remote authenticated attacker to execute various attacks.

  • EPSS 0.06%
  • Veröffentlicht 14.02.2025 04:15:08
  • Zuletzt bearbeitet 26.09.2025 14:03:27

Under certain error conditions at time of SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access to the Brocade SANnav database could use the encrypti...

  • EPSS 0.01%
  • Veröffentlicht 14.02.2025 04:15:07
  • Zuletzt bearbeitet 26.08.2025 20:02:17

CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could allow an authenticated, local attacker to view Brocade Fabric OS switch sensitive information in clear text. An attacker with a...