Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-4660

Ansible before 1.5.5 constructs filenames containing user and password fields on the basis of deb lines in sources.list, which might allow local users to obtain sensitive credential information in opportunistic circumstances by leveraging existence of a file that uses the "deb http://user:pass@server:port/" format.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.1%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2014-4660
  • Redhat » Ansible » Version: 0.0.1
    cpe:2.3:a:redhat:ansible:0.0.1
  • Redhat » Ansible » Version: 0.0.2
    cpe:2.3:a:redhat:ansible:0.0.2
  • Redhat » Ansible » Version: 0.01
    cpe:2.3:a:redhat:ansible:0.01
  • Redhat » Ansible » Version: 0.3
    cpe:2.3:a:redhat:ansible:0.3
  • Redhat » Ansible » Version: 0.3.1
    cpe:2.3:a:redhat:ansible:0.3.1
  • Redhat » Ansible » Version: 0.4
    cpe:2.3:a:redhat:ansible:0.4
  • Redhat » Ansible » Version: 0.4.1
    cpe:2.3:a:redhat:ansible:0.4.1
  • Redhat » Ansible » Version: 0.5
    cpe:2.3:a:redhat:ansible:0.5
  • Redhat » Ansible » Version: 0.6
    cpe:2.3:a:redhat:ansible:0.6
  • Redhat » Ansible » Version: 0.7
    cpe:2.3:a:redhat:ansible:0.7
  • Redhat » Ansible » Version: 0.7.1
    cpe:2.3:a:redhat:ansible:0.7.1
  • Redhat » Ansible » Version: 0.7.2
    cpe:2.3:a:redhat:ansible:0.7.2
  • Redhat » Ansible » Version: 0.8
    cpe:2.3:a:redhat:ansible:0.8
  • Redhat » Ansible » Version: 0.9
    cpe:2.3:a:redhat:ansible:0.9
  • Redhat » Ansible » Version: 1.0
    cpe:2.3:a:redhat:ansible:1.0
  • Redhat » Ansible » Version: 1.1
    cpe:2.3:a:redhat:ansible:1.1
  • Redhat » Ansible » Version: 1.2
    cpe:2.3:a:redhat:ansible:1.2
  • Redhat » Ansible » Version: 1.2.1
    cpe:2.3:a:redhat:ansible:1.2.1
  • Redhat » Ansible » Version: 1.2.2
    cpe:2.3:a:redhat:ansible:1.2.2
  • Redhat » Ansible » Version: 1.2.3
    cpe:2.3:a:redhat:ansible:1.2.3
  • Redhat » Ansible » Version: 1.3.0
    cpe:2.3:a:redhat:ansible:1.3.0
  • Redhat » Ansible » Version: 1.3.1
    cpe:2.3:a:redhat:ansible:1.3.1
  • Redhat » Ansible » Version: 1.3.2
    cpe:2.3:a:redhat:ansible:1.3.2
  • Redhat » Ansible » Version: 1.3.3
    cpe:2.3:a:redhat:ansible:1.3.3
  • Redhat » Ansible » Version: 1.3.4
    cpe:2.3:a:redhat:ansible:1.3.4
  • Redhat » Ansible » Version: 1.4.0
    cpe:2.3:a:redhat:ansible:1.4.0
  • Redhat » Ansible » Version: 1.4.1
    cpe:2.3:a:redhat:ansible:1.4.1
  • Redhat » Ansible » Version: 1.4.2
    cpe:2.3:a:redhat:ansible:1.4.2
  • Redhat » Ansible » Version: 1.4.3
    cpe:2.3:a:redhat:ansible:1.4.3
  • Redhat » Ansible » Version: 1.4.4
    cpe:2.3:a:redhat:ansible:1.4.4
  • Redhat » Ansible » Version: 1.4.5
    cpe:2.3:a:redhat:ansible:1.4.5
  • Redhat » Ansible » Version: 1.5.0
    cpe:2.3:a:redhat:ansible:1.5.0
  • Redhat » Ansible » Version: 1.5.1
    cpe:2.3:a:redhat:ansible:1.5.1
  • Redhat » Ansible » Version: 1.5.2
    cpe:2.3:a:redhat:ansible:1.5.2
  • Redhat » Ansible » Version: 1.5.3
    cpe:2.3:a:redhat:ansible:1.5.3
  • Redhat » Ansible » Version: 1.5.4
    cpe:2.3:a:redhat:ansible:1.5.4


Contact Us

Shodan ® - All rights reserved