RSS   Vulnerabilities for 'Cockpit-ovirt'   RSS

2019-05-17
 
CVE-2019-10139

CWE-255
 

 
During HE deployment via cockpit-ovirt, cockpit-ovirt generates an ansible variable file `/var/lib/ovirt-hosted-engine-setup/cockpit/ansibleVarFileXXXXXX.var` which contains the admin and the appliance passwords as plain-text. At the of the deployment procedure, these files are deleted.

 

 >>> Vendor: Ovirt 10 Products
Ovirt
Ovirt-engine-cli
Sanlock
Ovirt-node
Ovirt-hosted-engine-setup
VDSM
Cockpit-ovirt
Ovirt-engine
MOM
NODE


Copyright 2024, cxsecurity.com

 

Back to Top