VDB

CVE-2021-31918

CVE-2021-31918 PUBLISHED CVSS 7.5 HIGH

A flaw was found in tripleo-ansible version as shipped in Red Hat Openstack 16.1. The Ansible log file is readable to all users during stack update and creation. The highest threat from this vulnerability is to data confidentiality.

EPSS 1.00% · 59.5th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
1.00%
59.5th percentile

Affected Products

VendorProductVersions
n/atripleo-ansibleAs shipped in Red Hat Openstack 16.1
redhatopenstack16.1

Timeline

  • May 6, 2021 CVE Published
  • May 7, 2021 EPSS Score
  • Jul 10, 2021 EPSS Score
  • Sep 10, 2021 EPSS Score
  • Nov 11, 2021 EPSS Score
  • Jan 12, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Mar 15, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • May 16, 2022 EPSS Score
  • Jul 18, 2022 EPSS Score
  • Sep 18, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›