Plaintext exposure of sensitive authentication data in Brocade SANnav discovery service log files enables individuals with file read access to retrieve administrative switch credentials and active session tokens. An attacker with access to system logs or support bundles can leverage exposed authentication details to compromise managed network infrastructure and access active application sessions. This vulnerability affects Brocade SANnav versions before 3.0.1a.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Security update provided in Brocade SANnav 3.0.1a
Workaround
No workaround given by the vendor.
References
History
Thu, 24 Sep 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Plaintext exposure of sensitive authentication data in Brocade SANnav discovery service log files enables individuals with file read access to retrieve administrative switch credentials and active session tokens. An attacker with access to system logs or support bundles can leverage exposed authentication details to compromise managed network infrastructure and access active application sessions. This vulnerability affects Brocade SANnav versions before 3.0.1a. | |
| Title | Plaintext exposure of sensitive authentication data in SANnav discovery service log files | |
| Weaknesses | CWE-532 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: brocade
Published:
Updated: 2026-09-24T18:37:45.076Z
Reserved: 2026-08-28T19:39:58.088Z
Link: CVE-2026-82371
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses