MajorCritical vulnerability
CVE-2026-14443 (CVSS 8.4)
NVD · officialPublished Sep 24, 2026Risk 37/100
Incomplete log sanitization during bulk IPsec policy collection in Brocade SANnav versions before 3.0.1a permit extension switch pre-shared keys to be written to system logs. Individuals with read access to container logs or support archives can obtain these keys, leading to the potential compromise of encrypted network tunnels.
Technical details
CVSS
8.4
AV:LocalAC:LowPR:LowUI:None
Evidence and sources
This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.
Open primary source