Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ovirt-engine up to version 4.2.3 is vulnerable to an unfiltered password when choosing manual db provisioning. When engine-setup was run and one chooses to provision the database manually or connect to a remote database, the password input was logged in cleartext during the verification step. Sharing the provisioning log might inadvertently leak database passwords.
CVSS Information
N/A
Vulnerability Type
通过日志文件的信息暴露
Vulnerability Title
ovirt-engine 日志信息泄露漏洞
Vulnerability Description
ovirt-engine是一款开源的虚拟化管理引擎。 ovirt-engine 4.2.3版本及之前版本存在日志信息泄露漏洞,该漏洞源于密码输入在验证步骤中以明文形式记录。
CVSS Information
N/A
Vulnerability Type
N/A