MajorCritical vulnerability
CVE-2026-82372 (CVSS 8.5)
NVD · officialPublished Sep 24, 2026Risk 37/100
Improper handling of sensitive data during IPsec policy creation and modification in Brocade SANnav versions before 3.0.1a results in pre-shared keys being recorded in application logs. Individuals with read access to system log files or support bundles can view these credentials, leading to the potential exposure of keys used to secure network tunnels.
Technical details
CVSS
8.5
AV:AdjacentAC:LowPR:LowUI:None
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source