Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fqv6-g44j-5jx7

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.

A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.

EPSS

Процентиль: 62%
0.00435
Низкий

8.8 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 7.7
redhat
почти 8 лет назад

A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.

CVSS3: 8.8
nvd
почти 8 лет назад

A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.

CVSS3: 8.8
debian
почти 8 лет назад

A flaw was found in foreman before 1.16.1. The issue allows users with ...

EPSS

Процентиль: 62%
0.00435
Низкий

8.8 High

CVSS3

Дефекты

CWE-200