2.1
CVSSv2

CVE-2016-7062

Published: 27/06/2017 Updated: 05/07/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

rhscon-ceph in Red Hat Storage Console 2 x86_64 and Red Hat Storage Console Node 2 x86_64 allows local users to obtain the password as cleartext.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat storage console 2.0

redhat storage console node 2.0

Vendor Advisories

Synopsis Moderate: Red Hat Storage Console 2 security and bug fix update Type/Severity Security Advisory: Moderate Topic An update is now available for Red Hat Storage Console 2 for Red Hat Enteprise Linux 7Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vul ...
A flaw was found in the way authentication details were passed between rhscon-ceph and rhscon-core An authenticated, local attacker could use this flaw to recover the cleartext password ...