CVE-2024-29955

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
17/04/2024
Last modified:
04/02/2025

Description

A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow a privileged user to print the SANnav encrypted key in PostgreSQL startup logs. <br /> This could provide attackers with an additional, less-protected path to acquiring the encryption key. <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:* 2.3.0a (excluding)