Vulnerability Details CVE-2023-31423
Possible
information exposure through log file vulnerability where sensitive
fields are recorded in the configuration log without masking on Brocade
SANnav before v2.3.0 and 2.2.2a. Notes:
To access the logs, the local attacker must have access to an already collected Brocade SANnav "supportsave"
outputs.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 12.4%
CVSS Severity
CVSS v3 Score 5.7
Products affected by CVE-2023-31423
-
cpe:2.3:a:broadcom:brocade_sannav:-
-
cpe:2.3:a:broadcom:brocade_sannav:1.1.0
-
cpe:2.3:a:broadcom:brocade_sannav:1.1.1
-
cpe:2.3:a:broadcom:brocade_sannav:2.0
-
cpe:2.3:a:broadcom:brocade_sannav:2.1.0
-
cpe:2.3:a:broadcom:brocade_sannav:2.1.1
-
cpe:2.3:a:broadcom:brocade_sannav:2.2.0
-
cpe:2.3:a:broadcom:brocade_sannav:2.2.1
-
cpe:2.3:a:broadcom:brocade_sannav:2.2.2