Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3pcx-vgx2-j88m

Опубликовано: 17 дек. 2021
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

KNIME Server before 4.12.6 and 4.13.x before 4.13.4 (when installed in unattended mode) keeps the administrator's password in a file without appropriate file access controls, allowing all local users to read its content.

KNIME Server before 4.12.6 and 4.13.x before 4.13.4 (when installed in unattended mode) keeps the administrator's password in a file without appropriate file access controls, allowing all local users to read its content.

EPSS

Процентиль: 31%
0.00119
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-522
CWE-668

Связанные уязвимости

CVSS3: 2.9
nvd
около 4 лет назад

KNIME Server before 4.12.6 and 4.13.x before 4.13.4 (when installed in unattended mode) keeps the administrator's password in a file without appropriate file access controls, allowing all local users to read its content.

EPSS

Процентиль: 31%
0.00119
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-522
CWE-668