Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7pf9-7cff-f854

Опубликовано: 02 сент. 2022
Источник: github
Github: Прошло ревью
CVSS3: 5.5

Описание

sosreport Exposure of Sensitive Information vulnerability

It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev

Пакеты

Наименование

sosreport

pip
Затронутые версииВерсия исправления

< 4.4

4.4

EPSS

Процентиль: 16%
0.00249
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 4 лет назад

It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev

CVSS3: 5.1
redhat
больше 4 лет назад

It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev

CVSS3: 5.5
nvd
около 4 лет назад

It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev

CVSS3: 5.5
msrc
около 4 лет назад

It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6 ovirt-log-collector-4.4.7-2.el8ev

EPSS

Процентиль: 16%
0.00249
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-200