Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v9qc-85w7-58x4

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

BOSH System Metrics Server releases prior to 0.1.0 exposed the UAA password as a flag to a process running on the BOSH director. It exposed the password to any user or process with access to the same VM (through ps or looking at process details).

BOSH System Metrics Server releases prior to 0.1.0 exposed the UAA password as a flag to a process running on the BOSH director. It exposed the password to any user or process with access to the same VM (through ps or looking at process details).

EPSS

Процентиль: 55%
0.00327
Низкий

Связанные уязвимости

CVSS3: 6.5
nvd
больше 5 лет назад

BOSH System Metrics Server releases prior to 0.1.0 exposed the UAA password as a flag to a process running on the BOSH director. It exposed the password to any user or process with access to the same VM (through ps or looking at process details).

EPSS

Процентиль: 55%
0.00327
Низкий