Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5jfh-x25r-v632

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

HashiCorp Vault before 1.0.0 writes the master key to the server log in certain unusual or misconfigured scenarios in which incorrect data comes from the autoseal mechanism without an error being reported.

HashiCorp Vault before 1.0.0 writes the master key to the server log in certain unusual or misconfigured scenarios in which incorrect data comes from the autoseal mechanism without an error being reported.

EPSS

Процентиль: 53%
0.00306
Низкий

8.1 High

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 7.3
redhat
около 7 лет назад

HashiCorp Vault before 1.0.0 writes the master key to the server log in certain unusual or misconfigured scenarios in which incorrect data comes from the autoseal mechanism without an error being reported.

CVSS3: 8.1
nvd
около 7 лет назад

HashiCorp Vault before 1.0.0 writes the master key to the server log in certain unusual or misconfigured scenarios in which incorrect data comes from the autoseal mechanism without an error being reported.

EPSS

Процентиль: 53%
0.00306
Низкий

8.1 High

CVSS3

Дефекты

CWE-532