CVE-2012-5509
12.03.2013, 22:55
aeolus-configserver-setup in the Aeolas Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for a temporary file in /tmp, which allows local users to read credentials by reading this file.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redhat | cloudforms_cloud_engine | 𝑥 ≤ 1.1 |
| redhat | cloudforms_cloud_engine | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration