Vulnerability Details CVE-2014-0199
The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package before 3.3.3, stores the reports database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.5%
CVSS Severity
CVSS v2 Score 2.1
Products affected by CVE-2014-0199
-
cpe:2.3:a:redhat:rhevm-reports:3.0
-
cpe:2.3:a:redhat:rhevm-reports:3.1
-
cpe:2.3:a:redhat:rhevm-reports:3.2
-
cpe:2.3:a:redhat:rhevm-reports:3.3