Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-11079

Опубликовано: 18 окт. 2018
Источник: nvd
CVSS3: 5.5
CVSS3: 7.8
CVSS2: 2.1
EPSS Низкий

Описание

Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains a Plaintext Password Storage vulnerability. Database credentials are stored in plaintext in a configuration file. An authenticated malicious user with access to the configuration file may obtain the exposed password to gain access to the application database.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:emc:secure_remote_services:*:*:*:*:*:*:*:*
Версия до 3.32.00.08 (исключая)

EPSS

Процентиль: 31%
0.00372
Низкий

5.5 Medium

CVSS3

7.8 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 7.8
github
больше 4 лет назад

Dell EMC Secure Remote Services, versions prior to 3.32.00.08, contains a Plaintext Password Storage vulnerability. Database credentials are stored in plaintext in a configuration file. An authenticated malicious user with access to the configuration file may obtain the exposed password to gain access to the application database.

EPSS

Процентиль: 31%
0.00372
Низкий

5.5 Medium

CVSS3

7.8 High

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-522