5
CVSSv2

CVE-2017-7550

Published: 21/11/2017 Updated: 12/02/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

A flaw was found in the way Ansible (2.3.x prior to 2.3.3, and 2.4.x prior to 2.4.1) passed certain parameters to the jenkins_plugin module. Remote attackers could use this flaw to expose sensitive information from a remote host's logs. This flaw was fixed by not allowing passwords to be specified in the "params" argument, and noting this in the module documentation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat ansible

redhat enterprise linux server 7.0

Vendor Advisories

Synopsis Moderate: ansible security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic An update for ansible is now available for Red Hat Enterprise Linux 7 ExtrasRed Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Sco ...