← Vulnerability feed

Vulnerability record · CVE-2025-12772 · published 2 February 2026

CVE-2025-12772: Broadcom sannav cleartext storage of sensitive data vulnerability

Broadcom · Sannav

Brocade SANnav before 2.4.0b logs the Brocade Fabric OS Switch admin password on the SANnav support save logs. When OOM occurs on a Brocade SANnav server, the call stack trace for the Brocade switch is also collected in the heap dump file which contains this switch password in clear text. The vulnerability could allow a remote authenticated attacker with admin privilege able to access the SANnav logs or the supportsave to read the switch admin password.

8.5 CVSS 4.0 High EPSS 0.28% · top 81.8% CWE-312 · Cleartext storage of sensitive data
8.5CVSS 4.0 base score
0.28%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
17 Jun 2026Last modified by NVD

Description

Brocade SANnav before 2.4.0b logs the Brocade Fabric OS Switch admin password on the SANnav support save logs. When OOM occurs on a Brocade SANnav server, the call stack trace for the Brocade switch is also collected in the heap dump file which contains this switch password in clear text. The vulnerability could allow a remote authenticated attacker with admin privilege able to access the SANnav logs or the supportsave to read the switch admin password.

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-12772 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2022-28163Broadcom sannav sql injection vulnerabilityIn Brocade SANnav before Brocade SANnav 2.2.0, multiple endpoints associated with Zone management are susceptible to SQL injection, allowing an attac…EPSS 0.94%9.8CVE-2020-15377Broadcom sannav server-side request forgery (ssrf) vulnerabilityWebtools in Brocade SANnav before version 2.1.1 allows unauthenticated users to make requests to arbitrary hosts due to a misconfiguration; this is c…EPSS 1.2%8.8CVE-2022-28165Broadcom sannav vulnerabilityA vulnerability in the role-based access control (RBAC) functionality of the Brocade SANNav before 2.2.0 could allow an authenticated, remote attacke…EPSS 1.2%7.5CVE-2022-28166Broadcom sannav broken cryptographic algorithm vulnerabilityIn Brocade SANnav version before SANN2.2.0.2 and Brocade SANNav before 2.1.1.8, the implementation of TLS/SSL Server Supports the Use of Static Key C…EPSS 0.57%7.5CVE-2022-28168Broadcom sannav vulnerabilityIn Brocade SANnav before Brocade SANnav v2.2.0.2 and Brocade SANnav2.1.1.8, encoded scp-server passwords are stored using Base64 encoding, which coul…EPSS 0.93%7.5CVE-2020-15380Broadcom sannav sensitive information in log file vulnerabilityBrocade SANnav before version 2.1.1 logs account credentials at the ‘trace’ logging level.EPSS 0.99%7.5CVE-2020-15381Broadcom sannav insufficiently protected credentials vulnerabilityBrocade SANnav before version 2.1.1 contains an Improper Authentication vulnerability that allows cleartext transmission of authentication credential…EPSS 1.0%7.3CVE-2022-2068OpenSSL c_rehash script command injection via unsanitised filenamesThe OpenSSL c_rehash script fails to sanitise shell metacharacters in certificate filenames before passing them to shell commands, allowing OS comman…EPSS 95%analysed

Source: NIST National Vulnerability Database (record CVE-2025-12772), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.