Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rm7c-x6gj-2mr8

Опубликовано: 24 мая 2022
Источник: github
Github: Прошло ревью
CVSS3: 5.5

Описание

Heketi logs sensitive information

An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive information such as gluster-block passwords.

Пакеты

Наименование

github.com/heketi/heketi

go
Затронутые версииВерсия исправления

< 10.1.0

10.1.0

EPSS

Процентиль: 15%
0.00048
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-532

Связанные уязвимости

CVSS3: 5.5
redhat
больше 5 лет назад

An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive information such as gluster-block passwords.

CVSS3: 5.5
nvd
около 5 лет назад

An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive information such as gluster-block passwords.

CVSS3: 5.5
debian
около 5 лет назад

An information-disclosure flaw was found in the way Heketi before 10.1 ...

EPSS

Процентиль: 15%
0.00048
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-532