Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37421
HistoryOct 06, 2022 - 10:47 p.m.

Information Disclosure

2022-10-0622:47:43
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
convert2rhel
vulnerability
activation key
command line
unauthorized users
htop
ps
register systems

EPSS

0.001

Percentile

17.8%

convert2rhel is vulnerable to information disclosure. When the activation key option is used, the activation key is subsequently passed to the subscription manager via the command line, which allows unauthorized users to view the activation key via the process command line through the htop or ps, leading to register systems purchased by the victim

EPSS

0.001

Percentile

17.8%