The setup script in ovirt-engine-dwh, as used in the Red Hat Enterprise Virtualization Manager data warehouse (rhevm-dwh) package before 3.3.3, stores the history database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2014-05-30T14:00:00

Updated: 2024-08-06T09:05:39.293Z

Reserved: 2013-12-03T00:00:00

Link: CVE-2014-0202

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2014-05-30T14:55:08.817

Modified: 2023-02-13T00:37:21.043

Link: CVE-2014-0202

cve-icon Redhat

Severity : Low

Publid Date: 2014-05-27T00:00:00Z

Links: CVE-2014-0202 - Bugzilla