Threats Tagged 'cve-2025-12680'
View all threats tagged with 'cve-2025-12680'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-12680'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2025-12680 is a medium-severity vulnerability affecting Brocade SANnav versions prior to 2.4.0b, where database passwords are stored in plaintext within logs on the standby SANnav server after disaster recovery failover. This flaw allows a remote attacker with administrative privileges and some user interaction to access sensitive logs or supportsave files and extract database credentials. Exploitation requires authenticated admin access but can lead to credential compromise, potentially enabling further unauthorized access to SANnav-managed storage infrastructure. No known exploits are currently reported in the wild. The vulnerability impacts confidentiality primarily, with a CVSS score of 6. European organizations using affected Brocade SANnav versions should prioritize patching and restrict access to logs and supportsave files. Countries with significant enterprise storage deployments and Brocade SANnav usage, such as Germany, France, and the UK, are most likely to be affected. Join the discussion | CVE Database V5 | 02/02/2026, 20:50:29 UTC Added: 02/02/2026, 23:15:14 UTC |
Showing 1 to 1 of 1 result