Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-5626

Опубликовано: 23 окт. 2007
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.1
CVSS3: 5.5

Описание

make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MySQL password as a command line argument, and sometimes transmits cleartext e-mail containing this command line, which allows context-dependent attackers to obtain the password by listing the process and its arguments, or by sniffing the network.

РелизСтатусПримечание
devel

released

2.2.8-5ubuntu1
edgy

ignored

end of life, was needed
feisty

ignored

end of life, was needed
gutsy

ignored

end of life, was needed
hardy

released

2.2.8-5ubuntu1
intrepid

released

2.2.8-5ubuntu1
jaunty

released

2.2.8-5ubuntu1
karmic

released

2.2.8-5ubuntu1
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 8%
0.00034
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
nvd
почти 18 лет назад

make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MySQL password as a command line argument, and sometimes transmits cleartext e-mail containing this command line, which allows context-dependent attackers to obtain the password by listing the process and its arguments, or by sniffing the network.

CVSS3: 5.5
debian
почти 18 лет назад

make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MyS ...

CVSS3: 5.5
github
больше 3 лет назад

make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MySQL password as a command line argument, and sometimes transmits cleartext e-mail containing this command line, which allows context-dependent attackers to obtain the password by listing the process and its arguments, or by sniffing the network.

EPSS

Процентиль: 8%
0.00034
Низкий

2.1 Low

CVSS2

5.5 Medium

CVSS3