CVE-2012-5509
12.03.2013, 22:55
aeolus-configserver-setup in the Aeolas Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for a temporary file in /tmp, which allows local users to read credentials by reading this file.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | cloudforms_cloud_engine | 𝑥 ≤ 1.1 |
redhat | cloudforms_cloud_engine | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration