Описание
Projects using the SUSE Virtualization (Harvester) environment may expose the OS default ssh login password if they are using the 1.5.x or 1.6.x interactive installer to either create a new cluster or add new hosts to an existing cluster. The environment is not affected if the PXE boot mechanism is utilized along with the Harvester configuration setup.
EPSS
Процентиль: 18%
0.00056
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-1188
Связанные уязвимости
CVSS3: 9.8
github
около 1 месяца назад
Harvest May Expose OS Default SSH Login Password Via SUSE Virtualization Interactive Installer
EPSS
Процентиль: 18%
0.00056
Низкий
9.8 Critical
CVSS3
Дефекты
CWE-1188