CVE-2026-5049: Brocade Sannav

Medium severity, CVSS 6.9. EPSS: 0.2% chance of exploitation in the next 30 days.

A path traversal vulnerability affects the The Zone Alias Import flow feature in Brocade SANnav before 3.0.0a. A local authenticated attacker can write an uploaded content outside the intended directory.

Affected products

  • Brocade Brocade Sannav: before 3.0.0a (fixed in 3.0.0a)

Published 2026-10-08. Last modified 2026-10-08.