Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-10997

Опубликовано: 27 апр. 2020
Источник: nvd
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

Percona XtraBackup before 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include sensitive arguments passed at run time. In addition, when --history is passed at run time, this command line is also written to the PERCONA_SCHEMA.xtrabackup_history table.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:percona:xtrabackup:*:*:*:*:*:*:*:*
Версия от 2.4.11 (включая) до 2.4.20 (исключая)
cpe:2.3:a:percona:xtrabackup:*:*:*:*:*:*:*:*
Версия от 8.0.4 (включая) до 8.0.11 (исключая)

EPSS

Процентиль: 51%
0.00284
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 6 лет назад

Percona XtraBackup before 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include sensitive arguments passed at run time. In addition, when --history is passed at run time, this command line is also written to the PERCONA_SCHEMA.xtrabackup_history table.

CVSS3: 6.5
debian
почти 6 лет назад

Percona XtraBackup before 2.4.20 unintentionally writes the command li ...

github
больше 3 лет назад

Percona XtraBackup before 2.4.20 unintentionally writes the command line to any resulting backup file output. This may include sensitive arguments passed at run time. In addition, when --history is passed at run time, this command line is also written to the PERCONA_SCHEMA.xtrabackup_history table.

suse-cvrf
около 3 лет назад

Security update for xtrabackup

EPSS

Процентиль: 51%
0.00284
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200