Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2019-10194

Опубликовано: 26 фев. 2019
Источник: redhat
CVSS3: 5.9
EPSS Низкий

Описание

Sensitive passwords used in deployment and configuration of oVirt Metrics, all versions. were found to be insufficiently protected. Passwords could be disclosed in log files (if playbooks are run with -v) or in playbooks stored on Metrics or Bastion hosts.

Sensitive passwords used in the deployment and configuration of oVirt Metrics were found to be insufficiently protected. Passwords could be disclosed in log files (if playbooks are run with -v), or in playbooks stored on Metrics or Bastion hosts. (CVE-2019-10194)

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-532
https://bugzilla.redhat.com/show_bug.cgi?id=1726007ovirt-engine-metrics: disclosure of sensitive passwords in log files and ansible playbooks

EPSS

Процентиль: 27%
0.00345
Низкий

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
nvd
около 7 лет назад

Sensitive passwords used in deployment and configuration of oVirt Metrics, all versions. were found to be insufficiently protected. Passwords could be disclosed in log files (if playbooks are run with -v) or in playbooks stored on Metrics or Bastion hosts.

CVSS3: 5.5
github
около 4 лет назад

Sensitive passwords used in deployment and configuration of oVirt Metrics, all versions. were found to be insufficiently protected. Passwords could be disclosed in log files (if playbooks are run with -v) or in playbooks stored on Metrics or Bastion hosts.

EPSS

Процентиль: 27%
0.00345
Низкий

5.9 Medium

CVSS3