Description
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted key in PostgreSQL startup logs.
This could provide attackers with an additional, less-protected path to acquiring the encryption key.
This could provide attackers with an additional, less-protected path to acquiring the encryption key.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-26929 | A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted key in PostgreSQL startup logs. This could provide attackers with an additional, less-protected path to acquiring the encryption key. |
References
History
Tue, 04 Feb 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Broadcom
Broadcom brocade Sannav |
|
| CPEs | cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Broadcom
Broadcom brocade Sannav |
Status: PUBLISHED
Assigner: brocade
Published:
Updated: 2024-08-02T01:17:58.612Z
Reserved: 2024-03-22T05:18:44.192Z
Link: CVE-2024-29955
Updated: 2024-08-02T01:17:58.612Z
Status : Analyzed
Published: 2024-04-17T22:15:08.370
Modified: 2025-02-04T16:03:04.923
Link: CVE-2024-29955
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD