Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jmpc-vpwq-88q3

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

On version 1.9.0, If DEBUG logging is enable, F5 Container Ingress Service (CIS) for Kubernetes and Red Hat OpenShift (k8s-bigip-ctlr) log files may contain BIG-IP secrets such as SSL Private Keys and Private key Passphrases as provided as inputs by an AS3 Declaration.

On version 1.9.0, If DEBUG logging is enable, F5 Container Ingress Service (CIS) for Kubernetes and Red Hat OpenShift (k8s-bigip-ctlr) log files may contain BIG-IP secrets such as SSL Private Keys and Private key Passphrases as provided as inputs by an AS3 Declaration.

EPSS

Процентиль: 30%
0.00109
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 4.4
nvd
больше 6 лет назад

On version 1.9.0, If DEBUG logging is enable, F5 Container Ingress Service (CIS) for Kubernetes and Red Hat OpenShift (k8s-bigip-ctlr) log files may contain BIG-IP secrets such as SSL Private Keys and Private key Passphrases as provided as inputs by an AS3 Declaration.

EPSS

Процентиль: 30%
0.00109
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-532