1 results (0.001 seconds)

CVSS: 7.8EPSS: 0%CPEs: 2EXPL: 2

(1) lib/backup/cli/utility.rb in the backup-agoddard gem 3.0.28 and (2) lib/backup/cli/utility.rb in the backup_checksum gem 3.0.23 for Ruby place credentials on the openssl command line, which allows local users to obtain sensitive information by listing the process. (1) lib/backup/cli/utility.rb en la gema backup-agoddard 3.0.28 y (2) lib/backup/cli/utility.rb en la gema backup_checksum 3.0.23 para Ruby colocan credenciales en la línea de comandos de openssl. Esto permite que usuarios locales obtengan información sensible listando el proceso. • http://www.openwall.com/lists/oss-security/2014/07/07/11 http://www.openwall.com/lists/oss-security/2014/07/07/12 http://www.openwall.com/lists/oss-security/2014/07/17/5 http://www.vapid.dhs.org/advisories/backup-agoddard-3.0.28.html http://www.vapid.dhs.org/advisories/backup_checksum-3.0.23.html • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •