CVE-2016-6341
20.04.2017, 17:59
oVirt Engine before 4.0.3 does not include DWH_DB_PASSWORD in the list of keys to hide in log files, which allows local users to obtain sensitive password information by reading engine log files.Enginsight
Vendor | Product | Version |
---|---|---|
ovirt | ovirt | 𝑥 ≤ 4.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References