CVE-2025-12774: SQL queries with sensitive information printed in logs with Brocade SANnav before 3.0
A vulnerability in the migration script for Brocade SANnav before 3.0 could allow the collection of database sql queries in the SANnav support save file. An attacker with access to Brocade SANnav supportsave file, could open the file and then obtain sensitive information such as details of database tables and encrypted passwords.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-12774?
CVE-2025-12774 is considered a high severity vulnerability due to the potential exposure of sensitive database information.
How do I fix CVE-2025-12774?
To fix CVE-2025-12774, upgrade Brocade SANnav to version 3.0 or later to mitigate the vulnerability.
Who is affected by CVE-2025-12774?
CVE-2025-12774 affects users of Brocade SANnav versions prior to 3.0.
What type of data is exposed in CVE-2025-12774?
CVE-2025-12774 exposes sensitive SQL queries containing confidential information in support save files.
Can CVE-2025-12774 be exploited remotely?
CVE-2025-12774 requires an attacker to have access to the Brocade SANnav support save file for exploitation.