Логотип exploitDog
bind:"CVE-2020-8631" OR bind:"CVE-2020-8632" OR bind:"CVE-2018-10896"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-8631" OR bind:"CVE-2020-8632" OR bind:"CVE-2018-10896"

Количество 22

Количество 22

oracle-oval логотип

ELSA-2020-3898

больше 5 лет назад

ELSA-2020-3898: cloud-init security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0400-1

почти 6 лет назад

Security update for cloud-init

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0818-1

почти 6 лет назад

Security update for cloud-init

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0751-1

почти 6 лет назад

Security update for cloud-init

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:0585-1

почти 6 лет назад

Security update for cloud-init

EPSS: Низкий
oracle-oval логотип

ELSA-2020-4650

больше 5 лет назад

ELSA-2020-4650: cloud-init security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2020-8631

около 6 лет назад

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2020-8631

около 6 лет назад

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2020-8631

около 6 лет назад

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-8631

больше 5 лет назад

cloud-init through 19.4 relies on Mersenne Twister for a random password which makes it easier for attackers to predict passwords because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-8631

около 6 лет назад

cloud-init through 19.4 relies on Mersenne Twister for a random passwo ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2r47-hhff-7qcp

больше 3 лет назад

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

EPSS: Низкий
redhat логотип

CVE-2018-10896

больше 7 лет назад

The default cloud-init configuration, in cloud-init 0.6.2 and newer, included "ssh_deletekeys: 0", disabling cloud-init's deletion of ssh host keys. In some environments, this could lead to instances created by cloning a golden master or template system, sharing ssh host keys, and being able to impersonate one another or conduct man-in-the-middle attacks.

CVSS3: 4.6
EPSS: Низкий
nvd логотип

CVE-2018-10896

больше 7 лет назад

The default cloud-init configuration, in cloud-init 0.6.2 and newer, included "ssh_deletekeys: 0", disabling cloud-init's deletion of ssh host keys. In some environments, this could lead to instances created by cloning a golden master or template system, sharing ssh host keys, and being able to impersonate one another or conduct man-in-the-middle attacks.

CVSS3: 7.1
EPSS: Низкий
msrc логотип

CVE-2018-10896

больше 5 лет назад

CVSS3: 7.1
EPSS: Низкий
ubuntu логотип

CVE-2020-8632

около 6 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2020-8632

около 6 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2020-8632

около 6 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2020-8632

больше 5 лет назад

In cloud-init through 19.4 rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value which makes it easier for attackers to guess passwords.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-8632

около 6 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_ ...

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2020-3898

ELSA-2020-3898: cloud-init security, bug fix, and enhancement update (MODERATE)

больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0400-1

Security update for cloud-init

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0818-1

Security update for cloud-init

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0751-1

Security update for cloud-init

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:0585-1

Security update for cloud-init

почти 6 лет назад
oracle-oval логотип
ELSA-2020-4650

ELSA-2020-4650: cloud-init security, bug fix, and enhancement update (MODERATE)

больше 5 лет назад
ubuntu логотип
CVE-2020-8631

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
0%
Низкий
около 6 лет назад
redhat логотип
CVE-2020-8631

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 8.1
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-8631

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
0%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-8631

cloud-init through 19.4 relies on Mersenne Twister for a random password which makes it easier for attackers to predict passwords because rand_str in cloudinit/util.py calls the random.choice function.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-8631

cloud-init through 19.4 relies on Mersenne Twister for a random passwo ...

CVSS3: 5.5
0%
Низкий
около 6 лет назад
github логотип
GHSA-2r47-hhff-7qcp

cloud-init through 19.4 relies on Mersenne Twister for a random password, which makes it easier for attackers to predict passwords, because rand_str in cloudinit/util.py calls the random.choice function.

0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2018-10896

The default cloud-init configuration, in cloud-init 0.6.2 and newer, included "ssh_deletekeys: 0", disabling cloud-init's deletion of ssh host keys. In some environments, this could lead to instances created by cloning a golden master or template system, sharing ssh host keys, and being able to impersonate one another or conduct man-in-the-middle attacks.

CVSS3: 4.6
0%
Низкий
больше 7 лет назад
nvd логотип
CVE-2018-10896

The default cloud-init configuration, in cloud-init 0.6.2 and newer, included "ssh_deletekeys: 0", disabling cloud-init's deletion of ssh host keys. In some environments, this could lead to instances created by cloning a golden master or template system, sharing ssh host keys, and being able to impersonate one another or conduct man-in-the-middle attacks.

CVSS3: 7.1
0%
Низкий
больше 7 лет назад
msrc логотип
CVSS3: 7.1
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-8632

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 5.5
0%
Низкий
около 6 лет назад
redhat логотип
CVE-2020-8632

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 8.1
0%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-8632

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 5.5
0%
Низкий
около 6 лет назад
msrc логотип
CVE-2020-8632

In cloud-init through 19.4 rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value which makes it easier for attackers to guess passwords.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-8632

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_ ...

CVSS3: 5.5
0%
Низкий
около 6 лет назад

Уязвимостей на страницу