CVE-2022-28167

Severity CVSS v4.0:
Pending analysis
Type:
CWE-522 Insufficiently Protected Credentials
Publication date:
27/06/2022
Last modified:
08/08/2023

Description

Brocade SANnav before Brocade SANvav v. 2.2.0.2 and Brocade SANanv v.2.1.1.8 logs the Brocade Fabric OS switch password in plain text in asyncjobscheduler-manager.log

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:broadcom:sannav:*:*:*:*:*:*:*:* 2.1.1.8 (excluding)
cpe:2.3:a:broadcom:sannav:*:*:*:*:*:*:*:* 2.2.0.0 (including) 2.2.0.2 (excluding)