CVE-2025-1053
Feb. 14, 2025, 4:15 a.m.
None
No Score
Description
Under certain error conditions at time of SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access to the Brocade SANnav database could use the encryption key to obtain passwords used by Brocade SANnav.
Product(s) Impacted
| Product | Versions |
|---|---|
| Brocade SANnav |
|
Weaknesses
Common security weaknesses mapped to this vulnerability.
CWE-1295
Debug Messages Revealing Unnecessary Information
The product fails to adequately prevent the revealing of unnecessary and potentially sensitive system information within debugging messages.
Tags
Timeline
Published: Feb. 14, 2025, 4:15 a.m.
Last Modified: Feb. 14, 2025, 4:15 a.m.
Last Modified: Feb. 14, 2025, 4:15 a.m.
Status : Awaiting Analysis
CVE has been recently published to the CVE List and has been received by the NVD.
More infoSource
sirt@brocade.com
*Disclaimer: Some vulnerabilities do not have an associated CPE. To enhance the data, we use AI to infer CPEs based on CVE details. This is an automated process and might not always be accurate.