CVE-2024-29959: Brocade Fabric OS switch encrypted passwords in the Brocade SANnav Standby node's support save
Published Apr 19, 2024
·Updated
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints Brocade Fabric OS switch encrypted passwords in the Brocade SANnav Standby node's support save.
Affected Software
3 affected components
Broadcom Brocade Sannav<2.3.0a
Brocade SANNav<2.3.1
Brocade SANNav
Event History
Apr 19, 2024
CVE Published
via MITRE·03:19 AM
Data Sourced
via MITRE·03:19 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-29959?
CVE-2024-29959 is classified as a high severity vulnerability due to its potential to expose sensitive encrypted passwords.
2
How do I fix CVE-2024-29959?
To mitigate CVE-2024-29959, update Brocade SANnav to version 2.3.1 or later.
3
What does CVE-2024-29959 affect?
CVE-2024-29959 affects Brocade SANnav versions prior to 2.3.1 and 2.3.0a.
4
What type of information does CVE-2024-29959 expose?
CVE-2024-29959 exposes encrypted passwords from Brocade Fabric OS switches via the SANnav Standby node's support save.
5
Is there a workaround for CVE-2024-29959?
There are no recommended workarounds for CVE-2024-29959; patching to the latest version is the advised solution.