CVE-2014-0135
Published May 8, 2014
Last updated 11 years ago
Overview
- Description
- Kafo before 0.3.17 and 0.4.x before 0.5.2, as used by Foreman, uses world-readable permissions for default_values.yaml, which allows local users to obtain passwords and other sensitive information by reading the file.
- Source
- secalert@redhat.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 1.9
- Impact score
- 2.9
- Exploitability score
- 3.4
- Vector string
- AV:L/AC:M/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-264
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:theforeman:kafo:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BEDA6869-9D6C-465A-AEA9-9BD807BB9CD3", "versionEndIncluding": "0.3.16" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E06B70A9-926A-42C9-B32E-A1F5DDE70694" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C45AAA87-928A-44F4-BE0D-96C920073E92" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D36C2690-6550-4540-A1B3-A404109BC3F8" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "15D37C7A-3EF5-4E95-9EBB-B639F0F3E5F8" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "582CDBEE-21CA-4828-95D4-F0C86C1E708C" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E8DBD26C-2B23-4003-AC6C-912752AD166F" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B75554D2-A3C2-44A0-B1CC-2E838B8014A8" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F66CF6A-FF98-4F65-B60C-DC59777A8A8F" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A569A29-6ABF-4359-9508-B12EA6E89B30" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "89B27CD1-5136-43D1-8A99-7E6FEC4BE700" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D54B8D65-E309-462F-BBA3-39724A29CC87" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4E800948-7659-430D-8AA1-037F45D69D2F" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "26BD255A-FC21-4148-BACB-B7C5FA582047" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E98BEA7-E849-4D43-B9FC-FA57EC3248EF" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "146F8AFF-B014-4AF5-882F-B87FE6B1161F" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "194DC2C9-F4B7-4EFA-84EF-401F8CA73654" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.0.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0D53BA71-3ECB-47B5-883F-1A81BF823E8D" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "523F795C-B841-4895-8915-5BBB7795DA74" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C65F14E-BB16-4996-BB18-35E5718A36B3" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25EAF80A-87DA-41B5-8E3F-6BFB78677BF7" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "713E9773-35CF-4435-809A-06C5970E5261" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5EDFA8BD-DEC6-4B97-AA5B-87B6ED237192" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA736CD3-8FBB-49C7-B564-40A4888821D7" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3E91F250-1BD2-4A49-86E8-59FF4C134F7E" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ECB5FB7E-7C30-41B3-8CED-A8CD1B681856" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E45CE822-180D-48FA-B0D7-299C5EBBC066" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "41AF2F1B-D25C-4E5C-B148-EADB8DD15092" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C23E6100-188D-4607-AAD2-95C96EDCAF23" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C1DAFC70-B034-4E10-A87F-46369EFACAF3" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "993E084A-8E6F-42DF-9550-07BB399D4319" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7D476C3E-0149-4E9E-A2B1-8D37A2D8EA63" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AEBBD111-46E6-4BDB-A10C-F8D2EB2CD329" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E8697FA5-CE88-4CF5-9BD6-6AA232CE4A3F" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF328E69-72DE-47A0-8834-55BE8F875229" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10ED8374-3BDC-489A-9F68-DF5DA3A7A332" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DC480FE8-996F-4A61-BD49-B6A422777EA8" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.3.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4F43CB8E-8F9E-45F7-8251-D8872C06F2D6" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6383C4B3-2105-4888-B30E-A5FDEACF9FA1" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.5.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BDB29E10-A3AD-4A7D-B573-D581676542E4" }, { "criteria": "cpe:2.3:a:theforeman:kafo:0.5.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A9C36751-1EC7-47B1-ABDA-BA0D05292870" } ], "operator": "OR" } ] } ]