CVE-2023-31423

Possible information exposure through log file vulnerability where sensitive fields are recorded in the configuration log without masking on Brocade SANnav before v2.3.0 and 2.2.2a. Notes: To access the logs, the local attacker must have access to an already collected Brocade SANnav "supportsave" outputs.
Configurations

Configuration 1 (hide)

cpe:2.3:a:broadcom:brocade_sannav:*:*:*:*:*:*:*:*

History

13 Feb 2025, 17:16

Type Values Removed Values Added
Summary (en) Possible information exposure through log file vulnerability where sensitive fields are recorded in the configuration log without masking on Brocade SANnav before v2.3.0 and 2.2.2a. Notes: To access the logs, the local attacker must have access to an already collected Brocade SANnav "supportsave" outputs. (en) Possible information exposure through log file vulnerability where sensitive fields are recorded in the configuration log without masking on Brocade SANnav before v2.3.0 and 2.2.2a. Notes: To access the logs, the local attacker must have access to an already collected Brocade SANnav "supportsave" outputs.

21 Nov 2024, 08:01

Type Values Removed Values Added
References () https://security.netapp.com/advisory/ntap-20240229-0003/ - () https://security.netapp.com/advisory/ntap-20240229-0003/ -
References () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22508 - Vendor Advisory () https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/22508 - Vendor Advisory
CVSS v2 : unknown
v3 : 5.5
v2 : unknown
v3 : 5.7

21 Mar 2024, 02:47

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-31 01:15

Updated : 2025-02-13 17:16


NVD link : CVE-2023-31423

Mitre link : CVE-2023-31423

CVE.ORG link : CVE-2023-31423


JSON object : View

Products Affected

broadcom

  • brocade_sannav
CWE
CWE-312

Cleartext Storage of Sensitive Information