We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2022-43933

configuration secrets are logged in support-save



Assignerbrocade
Reserved2022-10-26
Published2024-11-21
Updated2024-11-21

Description

An information exposure through log file vulnerability exists in Brocade SANnav before Brocade SANnav 2.2.2, where configuration secrets are logged in supportsave. Supportsave file is generated by an admin user troubleshooting the switch. The Logged information may include usernames and passwords, and secret keys.



MEDIUM: 4.4CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

Product status

Default status
unaffected

before Brocade SANnav 2.2.2
affected

References

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/21221

cve.org CVE-2022-43933

nvd.nist.gov CVE-2022-43933

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2022-43933
Support options

Helpdesk Telegram

Subscribe to our newsletter to learn more about our work.