Brocade SANnav OVA before v2.3.1 and v2.3.0a contain hard-coded credentials in the documentation that appear as the appliance's root password. The vulnerability could allow an unauthenticated attacker full access to the Brocade SANnav appliance.
https://pierrekim.github.io/blog/2024-04-24-brocade-sannav-18-vulnerabilities.html
https://support.broadcom.com/external/content/SecurityAdvisories/0/23255