5
CVSSv2

CVE-2017-1000024

Published: 17/07/2017 Updated: 03/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable to an information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnome shotwell

Vendor Advisories

Shotwell could be made to expose sensitive information over the network ...
Shotwell version 0244 or earlier and 0253 or earlier is vulnerable to an information disclosure in the web publishing plugins resulting in potential password and oauth token plaintext transmission ...