An information exposure through log file vulnerability exists in Brocade SANnav before Brocade SANnav 2.2.2, where Brocade Fabric OS Switch passwords and authorization IDs are printed in the embedded MLS DB file.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-46905 An information exposure through log file vulnerability exists in Brocade SANnav before Brocade SANnav 2.2.2, where Brocade Fabric OS Switch passwords and authorization IDs are printed in the embedded MLS DB file.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 04 Feb 2025 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Broadcom
Broadcom brocade Sannav
CPEs cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:*
Vendors & Products Broadcom
Broadcom brocade Sannav

Thu, 21 Nov 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 21 Nov 2024 02:15:00 +0000

Type Values Removed Values Added
Description An information exposure through log file vulnerability exists in Brocade SANnav before Brocade SANnav 2.2.2, where Brocade Fabric OS Switch passwords and authorization IDs are printed in the embedded MLS DB file.
Title Switch passwords and authorization IDs are printed in the embedded MLS DB file
Weaknesses CWE-532
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:H/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: brocade

Published:

Updated: 2024-11-21T18:01:26.445Z

Reserved: 2022-10-26T19:34:16.361Z

Link: CVE-2022-43935

cve-icon Vulnrichment

Updated: 2024-11-21T17:55:53.995Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-21T11:15:14.363

Modified: 2025-02-04T18:16:02.403

Link: CVE-2022-43935

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses