VDB
CVE-2020-10763
CVE-2020-10763
PUBLISHED
Reported by redhat · Published November 24, 2020
An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive information such as gluster-block passwords.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | heketi | heketi 10.1.0 |
| github.com | heketi/heketi | 0, 0 |
| n/a | heketi | heketi 10.1.0, heketi 10.1.0 |
Timeline
- Nov 24, 2020 CVE Published
- Dec 2, 2020 CVE Updated
- Apr 14, 2021 EPSS Score
- Jun 22, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 25, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 27, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 2, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
References
- x_refsource_MISC
- x_refsource_MISC
- https://nvd.nist.gov/vuln/detail/CVE-2020-10763 advisory