4.7

CVE-2020-23249

GigaVUE-OS (GVOS) 5.4 - 5.9 stores a Redis database password in plaintext.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
GigamonGigavue-os Version >= 5.4.0 < 5.4.04
GigamonGigavue-os Version >= 5.5.0 < 5.5.02
GigamonGigavue-os Version >= 5.6.0 < 5.6.02
GigamonGigavue-os Version >= 5.7.0 < 5.7.04
GigamonGigavue-os Version >= 5.8.0 < 5.8.02
GigamonGigavue-os Version >= 5.9.0 < 5.9.00.04
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.11% 0.26
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.7 1.2 3.4
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:P/I:N/A:N
CWE-312 Cleartext Storage of Sensitive Information

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.