VDB

CVE-2020-10763

CVE-2020-10763 PUBLISHED CVSS 2.0999999046325684 LOW

Reported by redhat · Published November 24, 2020

An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive information such as gluster-block passwords.

Risk Scores

CVSS 2.0
2.0999999046325684

Affected Products

VendorProductVersions
n/aheketiheketi 10.1.0
github.comheketi/heketi0, 0
n/aheketiheketi 10.1.0, heketi 10.1.0, heketi 10.1.0

Timeline

  • Nov 24, 2020 CVE Published
  • Dec 2, 2020 CVE Updated
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 25, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 28, 2021 EPSS Score
  • Mar 1, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 3, 2022 EPSS Score
  • Jul 5, 2022 EPSS Score
  • Sep 6, 2022 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›