Brocade SANnav Database Password Exposure via System Audit Logs
CVE-2025-12773
7.1HIGH
What is CVE-2025-12773?
A vulnerability in the update-reports-purge-settings.sh script of Brocade SANnav prior to version 2.4.0a may allow a remote authenticated attacker to retrieve the Brocade SANnav database password from system audit logs. If an attacker gains access to these logs, they could potentially leverage this information to compromise the confidentiality and integrity of the database, posing significant risks to the overall security of the system.
Affected Version(s)
SANnav before 2.4.0a