CVE-2025-1053: Broadcom Brocade Sannav

Medium severity, CVSS 4.9. EPSS: 0.2% chance of exploitation in the next 30 days.

Under certain error conditions at time of SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access to the Brocade SANnav database could use the encryption key to obtain passwords used by Brocade SANnav.

Affected products

  • Broadcom Brocade Sannav: before 2.3.1b (fixed in 2.3.1b)

Published 2025-02-14. Last modified 2026-06-17.