CVE-2014-0199

EUVD-2014-0250
The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package before 3.3.3, stores the reports database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
2.1 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 17%
Affected Products (NVD)
VendorProductVersion
redhatrhevm-reports
𝑥
≤ 3.3
redhatrhevm-reports
3.0
redhatrhevm-reports
3.1
redhatrhevm-reports
3.2
𝑥
= Vulnerable software versions
Common Weakness Enumeration