CVE-2026-82371
8.5Brocade · SANnav
Brocade SANnav log files contain plaintext administrative credentials and session tokens, allowing local users with file read access to compromise managed network infrastructure.
Executive summary
A critical information disclosure vulnerability in Brocade SANnav allows local attackers to harvest administrative credentials and hijack active sessions, posing a significant risk to network infrastructure.
Vulnerability
This vulnerability involves the insertion of sensitive information into log files (CWE-532). The discovery service writes administrative credentials and session tokens in plaintext, which can be retrieved by any local user with file read access to system logs or support bundles.
Business impact
Successful exploitation of this flaw allows a malicious actor to gain unauthorized administrative control over managed network switches. Given the CVSS score of 8.5, this high-severity vulnerability could lead to total compromise of network management operations, unauthorized configuration changes, and complete loss of confidentiality regarding network traffic and session data.
Remediation
Immediate Action: Upgrade Brocade SANnav to version 3.0.1a or later, as provided by the vendor to remediate the logging defect.
Proactive Monitoring: Review file system permissions for log directories and monitor for unauthorized access to support bundles or discovery service logs.
Compensating Controls: Restrict local user access to the server hosting SANnav and ensure that log files are protected with strict filesystem-level permissions until the update is applied.
Exploitation status
Public Exploit Available: No — there is no confirmed public exploit in the available data.
Analyst recommendation
The exposure of administrative credentials in log files represents a severe security oversight that provides an easy path to network-wide compromise for local attackers. IT administrators must prioritize the update to version 3.0.1a immediately to prevent the potential harvesting of credentials and maintain the integrity of their network management environment.
More Brocade CVEs
History
- Disclosed CVE record published
- Collected by CVE Brief via github
- Analyst report written
- Published in the daily brief high section