Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

ubuntu логотип

CVE-2024-8775

почти 2 года назад

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2024-8775

почти 2 года назад

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2024-8775

почти 2 года назад

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2024-8775

около 1 года назад

Ansible-core: exposure of sensitive information in ansible vault files due to improper logging

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2024-8775

почти 2 года назад

A flaw was found in Ansible, where sensitive information stored in Ans ...

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

SUSE-RU-2025:0791-1

больше 1 года назад

Recommended update 4.3.15 for Multi-Linux Manager Client Tools

EPSS: Низкий
github логотип

GHSA-jpxc-vmjf-9fcj

почти 2 года назад

Ansible vulnerable to Insertion of Sensitive Information into Log File

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2025-09010

почти 2 года назад

Уязвимость системы управления конфигурациями Ansible, связанная с раскрытием информации через файлы журналов, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
EPSS: Низкий
redos логотип

ROS-20250724-03

около 1 года назад

Множественные уязвимости ansible-core

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
redhat логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext during the execution of a playbook. This occurs when using tasks such as include_vars to load vaulted variables without setting the no_log: true parameter, resulting in sensitive data being printed in the playbook output or logs. This can lead to the unintentional disclosure of secrets like passwords or API keys, compromising security and potentially allowing unauthorized access or actions.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
msrc логотип
CVE-2024-8775

Ansible-core: exposure of sensitive information in ansible vault files due to improper logging

CVSS3: 5.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-8775

A flaw was found in Ansible, where sensitive information stored in Ans ...

CVSS3: 5.5
0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-RU-2025:0791-1

Recommended update 4.3.15 for Multi-Linux Manager Client Tools

0%
Низкий
больше 1 года назад
github логотип
GHSA-jpxc-vmjf-9fcj

Ansible vulnerable to Insertion of Sensitive Information into Log File

CVSS3: 5.5
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2025-09010

Уязвимость системы управления конфигурациями Ansible, связанная с раскрытием информации через файлы журналов, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.5
0%
Низкий
почти 2 года назад
redos логотип
ROS-20250724-03

Множественные уязвимости ansible-core

CVSS3: 5.5
около 1 года назад

Уязвимостей на страницу