Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8w4f-3765-r94w

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

/usr/lpp/mmfs/bin/gpfs.snap in IBM General Parallel File System (GPFS) 4.1 before 4.1.0.7 produces an archive potentially containing cleartext keys, and lacks a warning about reviewing this archive to detect included keys, which might allow remote attackers to obtain sensitive information by leveraging access to a technical-support data stream.

/usr/lpp/mmfs/bin/gpfs.snap in IBM General Parallel File System (GPFS) 4.1 before 4.1.0.7 produces an archive potentially containing cleartext keys, and lacks a warning about reviewing this archive to detect included keys, which might allow remote attackers to obtain sensitive information by leveraging access to a technical-support data stream.

EPSS

Процентиль: 36%
0.00152
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 11 лет назад

/usr/lpp/mmfs/bin/gpfs.snap in IBM General Parallel File System (GPFS) 4.1 before 4.1.0.7 produces an archive potentially containing cleartext keys, and lacks a warning about reviewing this archive to detect included keys, which might allow remote attackers to obtain sensitive information by leveraging access to a technical-support data stream.

EPSS

Процентиль: 36%
0.00152
Низкий

Дефекты

CWE-200