Sensitive Data Exposure in Brocade SANnav by Broadcom
CVE-2026-5769

5.6MEDIUM

Key Information:

Vendor

Brocade

Vendor
CVE Published:
8 October 2026

What is CVE-2026-5769?

A vulnerability in Brocade SANnav prior to version 3.0.1 allows for the potential capture of the admin password in plaintext due to an Out Of Memory (OOM) condition. When this occurs, the server hosting the SANnav Virtual Machine (VM) may create a memory swap file that contains sensitive credentials. An authenticated admin user with access to the server could exploit this scenario to view the memory dump, leading to unauthorized access to critical system controls.

Affected Version(s)

Brocade SANnav 0 < 3.0.1

References

CVSS V4

Score:
5.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.