CNNVD-202507-1565 Information

CNNVD ID

CNNVD-202507-1565

CVE-2025-6392

  • CNNVD Published: 2025-07-10

Description (Chinese)

Broadcom Brocade SANnav是美国博通(Broadcom)公司的一款存储区域网络管理和自动化软件平台。 Broadcom Brocade SANnav 2.4.0a之前版本存在安全漏洞,该漏洞源于每日数据转储收集器调用docker exec命令时,可能以明文记录数据库密码到审计日志中。

Description (English)

Broadcom Brocade Sannav is a storage area network management and automated software platform for Broadcom. There was a security loophole in the previous version of Broadcom Brocade Sannav 2.4.0a, which originated when the daily data transfer collector called the docker exec command and could be explicitly recorded in the audit log with the database password.

Hazard Level

High

Vulnerability Type

日志信息泄露

Affected Vendor

博通

Published

2025-07-10

Last Modified

2026-02-24

References

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35910 https://nvd.nist.gov/vuln/detail/CVE-2025-6392 https://access.redhat.com/security/cve/cve-2025-6392

Patch

https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/35910

Share on: