CVE-2024-29962: Broadcom Brocade Sannav

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

Brocade SANnav OVA before v2.3.1 and v2.3.0a have an insecure file permission setting that makes files world-readable. This could allow a local user without the required privileges to access sensitive information or a Java binary.

Affected products

  • Broadcom Brocade Sannav: before 2.3.0a (fixed in 2.3.0a)

Published 2024-04-19. Last modified 2026-06-17.