Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2024-48206 | A flaw was found in oVirt. A user with administrator privileges, including users with the ReadOnlyAdmin permission, may be able to use browser developer tools to view Provider passwords in cleartext. |
Solution
No solution given by the vendor.
Workaround
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Wed, 30 Jul 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ovirt
Ovirt ovirt-engine Redhat virtualization |
|
CPEs | cpe:2.3:a:ovirt:ovirt-engine:*:*:*:*:*:*:*:* cpe:2.3:a:redhat:virtualization:4.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Ovirt
Ovirt ovirt-engine Redhat virtualization |
Sun, 13 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Thu, 26 Sep 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Thu, 26 Sep 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 26 Sep 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A flaw was found in oVirt. A user with administrator privileges, including users with the ReadOnlyAdmin permission, may be able to use browser developer tools to view Provider passwords in cleartext. | |
Title | Ovirt-engine: potential exposure of cleartext provider passwords via web ui | |
First Time appeared |
Redhat
Redhat rhev Hypervisor |
|
Weaknesses | CWE-312 | |
CPEs | cpe:/o:redhat:rhev_hypervisor:4 | |
Vendors & Products |
Redhat
Redhat rhev Hypervisor |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-07-30T15:51:46.722Z
Reserved: 2024-07-30T01:00:27.812Z
Link: CVE-2024-7259

Updated: 2024-09-26T15:50:49.334Z

Status : Analyzed
Published: 2024-09-26T16:15:08.997
Modified: 2025-07-30T15:46:46.760
Link: CVE-2024-7259


No data.