Brocade SANnav Database Password Exposure via System Audit Logs
CVE-2025-12773

7.1HIGH

Key Information:

Vendor

Brocade

Status
Vendor
CVE Published:
3 February 2026

What is CVE-2025-12773?

A vulnerability in the update-reports-purge-settings.sh script of Brocade SANnav prior to version 2.4.0a may allow a remote authenticated attacker to retrieve the Brocade SANnav database password from system audit logs. If an attacker gains access to these logs, they could potentially leverage this information to compromise the confidentiality and integrity of the database, posing significant risks to the overall security of the system.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

SANnav before 2.4.0a

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.