Lucene search

K
cvelistRedhatCVELIST:CVE-2020-25678
HistoryJan 08, 2021 - 5:59 p.m.

CVE-2020-25678

2021-01-0817:59:34
CWE-312
redhat
www.cve.org
2

5 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.8%

A flaw was found in ceph in versions prior to 16.y.z where ceph stores mgr module passwords in clear text. This can be found by searching the mgr logs for grafana and dashboard, with passwords visible.

CNA Affected

[
  {
    "product": "ceph",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "ceph versions prior to 16.y.z"
      }
    ]
  }
]

5 Medium

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

17.8%