Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-0718

Опубликовано: 29 авг. 2022
Источник: nvd
CVSS3: 4.9
EPSS Низкий

Описание

A flaw was found in python-oslo-utils. Due to improper parsing, passwords with a double quote ( " ) in them cause incorrect masking in debug logs, causing any part of the password after the double quote to be plaintext.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openstack:oslo.utils:*:*:*:*:*:*:*:*
Версия до 4.10.1 (исключая)
cpe:2.3:a:openstack:oslo.utils:4.12.0:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:redhat:openshift_container_platform:4.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openstack_platform:16.1:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

EPSS

Процентиль: 60%
0.00402
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-522
CWE-532

Связанные уязвимости

CVSS3: 4.9
ubuntu
больше 3 лет назад

A flaw was found in python-oslo-utils. Due to improper parsing, passwords with a double quote ( " ) in them cause incorrect masking in debug logs, causing any part of the password after the double quote to be plaintext.

CVSS3: 6
redhat
почти 4 года назад

A flaw was found in python-oslo-utils. Due to improper parsing, passwords with a double quote ( " ) in them cause incorrect masking in debug logs, causing any part of the password after the double quote to be plaintext.

CVSS3: 4.9
debian
больше 3 лет назад

A flaw was found in python-oslo-utils. Due to improper parsing, passwo ...

suse-cvrf
7 месяцев назад

Security update for python-oslo.utils

CVSS3: 4.9
github
больше 3 лет назад

python-oslo-utils has improper password parsing

EPSS

Процентиль: 60%
0.00402
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-522
CWE-532