Incomplete log sanitization during bulk IPsec policy collection in Brocade SANnav versions before 3.0.1a permit extension switch pre-shared keys to be written to system logs. Individuals with read access to container logs or support archives can obtain these keys, leading to the potential compromise of encrypted network tunnels.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
Security update provided in Brocade SANnav 3.0.1a
Workaround
No workaround given by the vendor.
References
History
Thu, 24 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Incomplete log sanitization during bulk IPsec policy collection in Brocade SANnav versions before 3.0.1a permit extension switch pre-shared keys to be written to system logs. Individuals with read access to container logs or support archives can obtain these keys, leading to the potential compromise of encrypted network tunnels. | |
| Title | Incomplete log sanitization during bulk IPsec policy collection in Brocade SANnav before 3.0.1a | |
| Weaknesses | CWE-532 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: brocade
Published:
Updated: 2026-09-24T20:06:28.925Z
Reserved: 2026-07-01T23:05:44.125Z
Link: CVE-2026-14443
No data.
Status : Received
Published: 2026-09-24T21:17:12.130
Modified: 2026-09-24T21:17:12.130
Link: CVE-2026-14443
No data.
OpenCVE Enrichment
No data.
Weaknesses