Vulnerability Intelligence Report
Brocade Fabric OS switch encrypted passwords in the Brocade SANnav Standby node's support save
CVE-2024-29959
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints Brocade Fabric OS switch encrypted passwords in the Brocade SANnav Standby node's support save.
No Active Exploit Signals
CVSS Base Score
8.6
HIGH
Exploitability:3.9
Impact Score:4.0
EPSS Probability:0.48%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-532 ↗CWE-532 Insertion of Sensitive Information into Log File
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| Brocade | Brocade SANnav | before v2.3.1 and v2.3.0a (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
0.476%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Brocade Communications Systems LLC, a Broadcom Company · Vendor · USA |
| Reserved | 2024-03-22T05:18:44 |
| Published | 2024-04-19T03:19:28 |
| Last Updated | 2024-08-02T01:17:58 |
Community Chatter & Buzz