CVE-2022-43936: Brocade Fabric OS switch passwords when debugging is enabled
Published Nov 21, 2024
·Updated
Brocade SANnav versions before 2.2.2 log Brocade Fabric OS switch passwords when debugging is enabled.
Affected Software
2 affected components
Brocade SANNav<2.2.2
Broadcom Brocade Sannav<2.2.2
Event History
Nov 21, 2024
CVE Published
via MITRE·03:04 AM
Data Sourced
via MITRE·03:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-43936?
CVE-2022-43936 has a severity of medium due to the potential exposure of sensitive information.
2
How do I fix CVE-2022-43936?
To fix CVE-2022-43936, upgrade Brocade SANnav to version 2.2.2 or higher.
3
What types of passwords are logged in CVE-2022-43936?
CVE-2022-43936 logs Brocade Fabric OS switch passwords when debugging is enabled.
4
Which versions of Brocade SANnav are affected by CVE-2022-43936?
Brocade SANnav versions prior to 2.2.2 are affected by CVE-2022-43936.
5
What is the risk of enabling debugging with CVE-2022-43936?
Enabling debugging with CVE-2022-43936 poses a risk of exposing sensitive authentication credentials.