Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-3538

Опубликовано: 04 дек. 2012
Источник: redhat
CVSS2: 4.9

Описание

Pulp in Red Hat CloudForms before 1.1 logs administrative passwords in a world-readable file, which allows local users to read pulp administrative passwords by reading production.log.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=852199katello: pulp admin password logged in plaintext in world-readable katello/production.log

4.9 Medium

CVSS2

Связанные уязвимости

nvd
около 13 лет назад

Pulp in Red Hat CloudForms before 1.1 logs administrative passwords in a world-readable file, which allows local users to read pulp administrative passwords by reading production.log.

github
больше 3 лет назад

Pulp in Red Hat CloudForms before 1.1 logs administrative passwords in a world-readable file, which allows local users to read pulp administrative passwords by reading production.log.

4.9 Medium

CVSS2