Описание
Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable to an information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 7 | shotwell | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-200
https://bugzilla.redhat.com/show_bug.cgi?id=1482558shotwell: Information disclosure in the web publishing plugins
EPSS
Процентиль: 66%
0.01209
Низкий
6.5 Medium
CVSS3
Связанные уязвимости
CVSS3: 7.5
ubuntu
около 9 лет назад
Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable to an information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission
CVSS3: 7.5
nvd
около 9 лет назад
Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable to an information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission
CVSS3: 7.5
debian
около 9 лет назад
Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable ...
EPSS
Процентиль: 66%
0.01209
Низкий
6.5 Medium
CVSS3