Lucene search

K
cvelistRedhatCVELIST:CVE-2012-6117
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-6117

2022-10-0316:15:27
redhat
www.cve.org
aeolus configuration server
red hat cloudforms
plaintext passwords
log file
local users

6.2 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Aeolus Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for /var/log/aeolus-configserver/configserver.log, which allows local users to read plaintext passwords by reading the log file.

6.2 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Related for CVELIST:CVE-2012-6117