Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w9c7-99vf-c9gw

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

The web interface in Red Hat QuickStart Cloud Installer (QCI) 1.0 does not mask passwords fields, which allows physically proximate attackers to obtain sensitive password information by reading the display.

The web interface in Red Hat QuickStart Cloud Installer (QCI) 1.0 does not mask passwords fields, which allows physically proximate attackers to obtain sensitive password information by reading the display.

EPSS

Процентиль: 35%
0.00416
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.9
redhat
больше 9 лет назад

The web interface in Red Hat QuickStart Cloud Installer (QCI) 1.0 does not mask passwords fields, which allows physically proximate attackers to obtain sensitive password information by reading the display.

CVSS3: 4.6
nvd
больше 9 лет назад

The web interface in Red Hat QuickStart Cloud Installer (QCI) 1.0 does not mask passwords fields, which allows physically proximate attackers to obtain sensitive password information by reading the display.

EPSS

Процентиль: 35%
0.00416
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-200