7.5
CVE-2020-6938
- EPSS 0.32%
- Veröffentlicht 08.07.2020 16:15:11
- Zuletzt bearbeitet 21.11.2024 05:36:22
- Quelle security@salesforce.com
- CVE-Watchlists
- Unerledigt
A sensitive information disclosure vulnerability in Tableau Server 10.5, 2018.x, 2019.x, 2020.x released before June 26, 2020, could allow access to sensitive information in log files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tableau ≫ Tableau Server Version >= 2018.1 <= 2020.2
Tableau ≫ Tableau Server Version10.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.32% | 0.516 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-532 Insertion of Sensitive Information into Log File
The product writes sensitive information to a log file.