Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-8563

Опубликовано: 07 дек. 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.1
CVSS3: 4.7

Описание

In Kubernetes clusters using VSphere as a cloud provider, with a logging level set to 4 or above, VSphere cloud credentials will be leaked in the cloud controller manager's log. This affects < v1.19.3.

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-apps/focal

not-affected

code not present
esm-apps/jammy

not-affected

code not present
esm-apps/noble

not-affected

code not present
esm-infra-legacy/trusty

DNE

focal

ignored

end of standard support, was needs-triage
groovy

ignored

end of life
hirsute

ignored

end of life
impish

ignored

end of life

Показывать по

EPSS

Процентиль: 23%
0.00075
Низкий

2.1 Low

CVSS2

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.3
redhat
больше 5 лет назад

In Kubernetes clusters using VSphere as a cloud provider, with a logging level set to 4 or above, VSphere cloud credentials will be leaked in the cloud controller manager's log. This affects < v1.19.3.

CVSS3: 4.7
nvd
около 5 лет назад

In Kubernetes clusters using VSphere as a cloud provider, with a logging level set to 4 or above, VSphere cloud credentials will be leaked in the cloud controller manager's log. This affects < v1.19.3.

CVSS3: 5.5
msrc
около 5 лет назад

Secret leaks in logs for vSphere Provider kube-controller-manager

CVSS3: 4.7
debian
около 5 лет назад

In Kubernetes clusters using VSphere as a cloud provider, with a loggi ...

CVSS3: 6.3
github
почти 2 года назад

Sensitive Information leak via Log File in Kubernetes

EPSS

Процентиль: 23%
0.00075
Низкий

2.1 Low

CVSS2

4.7 Medium

CVSS3