2.1
CVSSv2

CVE-2014-0199

Published: 29/05/2014 Updated: 13/02/2023
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package prior to 3.3.3, stores the reports database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat rhevm-reports 3.0

redhat rhevm-reports 3.1

redhat rhevm-reports

redhat rhevm-reports 3.2

Vendor Advisories

The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package before 333, stores the reports database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file ...