CVE-2022-28162Cleartext Storage of Sensitive Info in Sannav

Severity
3.3LOWNVD
EPSS
0.0%
top 93.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 9
Latest updateMay 10

Description

Brocade SANnav before version SANnav 2.2.0 logs the REST API Authentication token in plain text.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 1.8 | Impact: 1.4

Affected Packages2 packages

CVEListV5broadcom/brocade_sannavBrocade SANNav before 2.2.0
NVDbroadcom/sannav< 2.2.0

🔴Vulnerability Details

2
GHSA
GHSA-r4w6-45h7-r5jm: Brocade SANnav before version SANnav 22022-05-10
CVEList
CVE-2022-28162: Brocade SANnav before version SANnav 22022-05-09
CVE-2022-28162 — Cleartext Storage of Sensitive Info | cvebase