CVE-2025-1053: Broadcom Brocade Sannav
Medium severity, CVSS 4.9. EPSS: 0.2% chance of exploitation in the next 30 days.
Under certain error conditions at time of SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access to the Brocade SANnav database could use the encryption key to obtain passwords used by Brocade SANnav.
Affected products
- Broadcom Brocade Sannav: before 2.3.1b (fixed in 2.3.1b)
Published 2025-02-14. Last modified 2026-06-17.