NA - CVE-2022-31697 - The vCenter Server contains an information...

Executive Summary

Informations
Name
CVE-2022-31697
First vendor Publication
2022-12-13
Vendor
Cve
Last vendor Modification
2022-12-13

Security-Database Scoring CVSS v3


Cvss vector : N/A
Overall CVSS Score
NA

Base Score
NA
Environmental Score
NA
impact SubScore
NA
Temporal Score
NA
Exploitabality Sub Score
NA

 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2


Cvss vector :
Cvss Base Score
N/A
Attack Range
N/A
Cvss Impact Score
N/A
Attack Complexity
N/A
Cvss Expoit Score
N/A
Authentication
N/A
Calculate full CVSS 2.0 Vectors scores

Detail




The vCenter Server contains an information disclosure vulnerability due to the logging of credentials in plaintext. A malicious actor with access to a workstation that invoked a vCenter Server Appliance ISO operation (Install/Upgrade/Migrate/Restore) can access plaintext passwords used during that operation.




Original Source


Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-31697

Sources (Detail)


Alert History


If you want to see full details history, please login or register. Date
Informations
2022-12-13 21:27:15

  • First insertion




  • Support the originator by clicking the read the rest link below.