CVE-2025-12680
EUVD-2025-20675302.02.2026, 23:15
Brocade SANnav before Brocade SANnav 2.4.0b logs database passwords in clear text in the standby SANnav server, after disaster recovery failover. The vulnerability could allow a remote authenticated attacker with admin privilege able to access the SANnav logs or the supportsave to read the database password.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| broadcom | sannav | 𝑥 < 2.4.0b |
𝑥
= Vulnerable software versions
Common Weakness Enumeration