Lucene search

K
cvelistRedhatCVELIST:CVE-2017-15104
HistoryDec 18, 2017 - 7:00 p.m.

CVE-2017-15104

2017-12-1819:00:00
CWE-552
redhat
www.cve.org
1

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.3%

An access flaw was found in Heketi 5, where the heketi.json configuration file was world readable. An attacker having local access to the Heketi server could read plain-text passwords from the heketi.json file.

CNA Affected

[
  {
    "product": "Heketi",
    "vendor": "Heketi",
    "versions": [
      {
        "status": "affected",
        "version": "5.0"
      }
    ]
  }
]

7.2 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.3%