Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-45154

Опубликовано: 15 фев. 2023
Источник: nvd
CVSS3: 4.4
CVSS3: 5.5
EPSS Низкий

Описание

A Cleartext Storage of Sensitive Information vulnerability in suppportutils of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15, SUSE Linux Enterprise Server 15 SP3 allows attackers that get access to the support logs to gain knowledge of the stored credentials This issue affects: SUSE Linux Enterprise Server 12 supportutils version 3.0.10-95.51.1CWE-312: Cleartext Storage of Sensitive Information and prior versions. SUSE Linux Enterprise Server 15 supportutils version 3.1.21-150000.5.44.1 and prior versions. SUSE Linux Enterprise Server 15 SP3 supportutils version 3.1.21-150300.7.35.15.1 and prior versions.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:opensuse:supportutils:*:*:*:*:*:*:*:*
Версия до 3.0.10-95.51.1 (включая)
cpe:2.3:o:suse:linux_enterprise_server:12:-:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:a:opensuse:supportutils:*:*:*:*:*:*:*:*
Версия до 3.1.21-150000.5.44.1 (включая)
cpe:2.3:o:suse:linux_enterprise_server:15:-:*:*:*:*:*:*
Конфигурация 3

Одновременно

cpe:2.3:a:opensuse:supportutils:*:*:*:*:*:*:*:*
Версия до 3.1.21-150300.7.35.15.1 (включая)
cpe:2.3:o:suse:linux_enterprise_server:15:sp3:*:*:*:*:*:*

EPSS

Процентиль: 2%
0.00013
Низкий

4.4 Medium

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-312

Связанные уязвимости

suse-cvrf
больше 2 лет назад

Security update for supportutils

suse-cvrf
больше 2 лет назад

Security update for supportutils

suse-cvrf
больше 2 лет назад

Security update for supportutils

CVSS3: 5.5
github
почти 3 года назад

A Cleartext Storage of Sensitive Information vulnerability in suppportutils of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15, SUSE Linux Enterprise Server 15 SP3 allows attackers that get access to the support logs to gain knowledge of the stored credentials This issue affects: SUSE Linux Enterprise Server 12 supportutils version 3.0.10-95.51.1CWE-312: Cleartext Storage of Sensitive Information and prior versions. SUSE Linux Enterprise Server 15 supportutils version 3.1.21-150000.5.44.1 and prior versions. SUSE Linux Enterprise Server 15 SP3 supportutils version 3.1.21-150300.7.35.15.1 and prior versions.

EPSS

Процентиль: 2%
0.00013
Низкий

4.4 Medium

CVSS3

5.5 Medium

CVSS3

Дефекты

CWE-312