Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-93fq-2c5r-cj4m

Опубликовано: 02 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the automation user's secret to be written to the site Apache access log.

Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the automation user's secret to be written to the site Apache access log.

EPSS

Процентиль: 16%
0.00052
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 4.4
ubuntu
почти 3 года назад

Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the automation user's secret to be written to the site Apache access log.

CVSS3: 4.4
nvd
почти 3 года назад

Transmission of credentials within query parameters in Checkmk <= 2.1.0p26, <= 2.0.0p35, and <= 2.2.0b6 (beta) may cause the automation user's secret to be written to the site Apache access log.

CVSS3: 4.4
debian
почти 3 года назад

Transmission of credentials within query parameters in Checkmk <= 2.1. ...

EPSS

Процентиль: 16%
0.00052
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-532