Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-0202

Опубликовано: 27 мая 2014
Источник: redhat
CVSS2: 2.1
EPSS Низкий

Описание

The setup script in ovirt-engine-dwh, as used in the Red Hat Enterprise Virtualization Manager data warehouse (rhevm-dwh) package before 3.3.3, stores the history database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.

Дополнительная информация

Статус:

Low
Дефект:
CWE-522
https://bugzilla.redhat.com/show_bug.cgi?id=1094234ovirt-engine-dwh: setup script logs database password in cleartext

EPSS

Процентиль: 18%
0.00056
Низкий

2.1 Low

CVSS2

Связанные уязвимости

nvd
больше 11 лет назад

The setup script in ovirt-engine-dwh, as used in the Red Hat Enterprise Virtualization Manager data warehouse (rhevm-dwh) package before 3.3.3, stores the history database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.

github
больше 3 лет назад

The setup script in ovirt-engine-dwh, as used in the Red Hat Enterprise Virtualization Manager data warehouse (rhevm-dwh) package before 3.3.3, stores the history database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.

EPSS

Процентиль: 18%
0.00056
Низкий

2.1 Low

CVSS2