Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-51390

Опубликовано: 21 дек. 2023
Источник: nvd
CVSS3: 6.5
CVSS3: 7.5
EPSS Низкий

Описание

journalpump is a daemon that takes log messages from journald and pumps them to a given output. A logging vulnerability was found in journalpump which logs out the configuration of a service integration in plaintext to the supplied logging pipeline, including credential information contained in the configuration if any. The problem has been patched in journalpump 2.5.0.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:aiven:journalpump:*:*:*:*:*:*:*:*
Версия до 2.5.0 (исключая)

EPSS

Процентиль: 23%
0.00077
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-215
CWE-319

EPSS

Процентиль: 23%
0.00077
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-215
CWE-319