Pulp in Red Hat CloudForms before 1.1 logs administrative passwords in a world-readable file, which allows local users to read pulp administrative passwords by reading production.log.
References
Configurations
Information
Published : 2013-01-04 14:55
Updated : 2017-08-28 18:31
NVD link : CVE-2012-3538
Mitre link : CVE-2012-3538
JSON object : View
CWE
CWE-255
Credentials Management Errors
Products Affected
redhat
- cloudforms