Логотип exploitDog
bind:"BDU:2025-09010" OR bind:"CVE-2024-8775"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2025-09010" OR bind:"CVE-2024-8775"

Количество 9

Количество 9

fstec логотип

BDU:2025-09010

11 месяцев назад

Уязвимость системы управления конфигурациями Ansible, связанная с раскрытием информации через файлы журналов, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2024-8775

11 месяцев назад

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2024-8775

11 месяцев назад

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2024-8775

11 месяцев назад

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2024-8775

около 1 месяца назад

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2024-8775

11 месяцев назад

A flaw was found in Ansible, where sensitive information stored in Ans ...

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

SUSE-RU-2025:0791-1

6 месяцев назад

Recommended update 4.3.15 for Multi-Linux Manager Client Tools

EPSS: Низкий
github логотип

GHSA-jpxc-vmjf-9fcj

11 месяцев назад

Ansible vulnerable to Insertion of Sensitive Information into Log File

CVSS3: 5.5
EPSS: Низкий
redos логотип

ROS-20250724-03

28 дней назад

Множественные уязвимости ansible-core

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2025-09010

Уязвимость системы управления конфигурациями Ansible, связанная с раскрытием информации через файлы журналов, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
0%
Низкий
11 месяцев назад
ubuntu логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
redhat логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
nvd логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
msrc логотип
CVSS3: 5.5
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ans ...

CVSS3: 5.5
0%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-RU-2025:0791-1

Recommended update 4.3.15 for Multi-Linux Manager Client Tools

0%
Низкий
6 месяцев назад
github логотип
GHSA-jpxc-vmjf-9fcj

Ansible vulnerable to Insertion of Sensitive Information into Log File

CVSS3: 5.5
0%
Низкий
11 месяцев назад
redos логотип
ROS-20250724-03

Множественные уязвимости ansible-core

CVSS3: 5.5
28 дней назад

Уязвимостей на страницу