Логотип exploitDog
bind:CVE-2014-4660
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-4660

Количество 4

Количество 4

ubuntu логотип

CVE-2014-4660

почти 6 лет назад

Ansible before 1.5.5 constructs filenames containing user and password fields on the basis of deb lines in sources.list, which might allow local users to obtain sensitive credential information in opportunistic circumstances by leveraging existence of a file that uses the "deb http://user:pass@server:port/" format.

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2014-4660

почти 6 лет назад

Ansible before 1.5.5 constructs filenames containing user and password fields on the basis of deb lines in sources.list, which might allow local users to obtain sensitive credential information in opportunistic circumstances by leveraging existence of a file that uses the "deb http://user:pass@server:port/" format.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2014-4660

почти 6 лет назад

Ansible before 1.5.5 constructs filenames containing user and password ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-5xm4-jmpw-p6j3

больше 3 лет назад

Ansible discloses credential information

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-4660

Ansible before 1.5.5 constructs filenames containing user and password fields on the basis of deb lines in sources.list, which might allow local users to obtain sensitive credential information in opportunistic circumstances by leveraging existence of a file that uses the "deb http://user:pass@server:port/" format.

CVSS3: 5.5
0%
Низкий
почти 6 лет назад
nvd логотип
CVE-2014-4660

Ansible before 1.5.5 constructs filenames containing user and password fields on the basis of deb lines in sources.list, which might allow local users to obtain sensitive credential information in opportunistic circumstances by leveraging existence of a file that uses the "deb http://user:pass@server:port/" format.

CVSS3: 5.5
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2014-4660

Ansible before 1.5.5 constructs filenames containing user and password ...

CVSS3: 5.5
0%
Низкий
почти 6 лет назад
github логотип
GHSA-5xm4-jmpw-p6j3

Ansible discloses credential information

CVSS3: 5.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу