CVE-2024-29952
Clear text storage of sensistive information by manipulating command variables
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.5EPSS 0.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
17 Apr 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow an authenticated user to print the Auth, Priv, and SSL key store passwords in unencrypted logs by manipulating command variables.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Affected products
Brocade · Brocade SANnavWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →