Vulnerabilities
Vulnerable Software
Sos Project:  >> Sos  >> 3.5  Security Vulnerabilities
It was found that the ovirt-log-collector/sosreport collects the RHV admin password unfiltered. Fixed in: sos-4.2-20.el8_6, ovirt-log-collector-4.4.7-2.el8ev
CVSS Score
5.5
EPSS Score
0.0
Published
2022-09-01
sosreport in SoS 3.x allows local users to obtain sensitive information from sosreport files or gain privileges via a symlink attack on an archive file in a temporary directory, as demonstrated by sosreport-$hostname-$date.tar in /tmp/sosreport-$hostname-$date.
CVSS Score
7.8
EPSS Score
0.001
Published
2017-11-06


Contact Us

Shodan ® - All rights reserved