Vulnerability Details CVE-2012-5509
aeolus-configserver-setup in the Aeolas Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for a temporary file in /tmp, which allows local users to read credentials by reading this file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.3%
CVSS Severity
CVSS v2 Score 2.1
Products affected by CVE-2012-5509
-
cpe:2.3:a:redhat:cloudforms_cloud_engine:1.0
-
cpe:2.3:a:redhat:cloudforms_cloud_engine:1.1