1 results (0.002 seconds)
CVSS: 6.2EPSS: 0%CPEs: 1EXPL: 0

CVE-2021-21270 – Cleartext Storage of Sensitive Information
https://notcve.org/view.php?id=CVE-2021-21270
22 Jan 2021 — OctopusDSC is a PowerShell module with DSC resources that can be used to install and configure an Octopus Deploy Server and Tentacle agent. In OctopusDSC version 4.0.977 and earlier a customer API key used to connect to Octopus Server is exposed via logging in plaintext. This vulnerability is patched in version 4.0.1002. OctopusDSC es un módulo de PowerShell con recursos de DSC, que se puede utilizar para instalar y configurar un agente de Octopus Deploy Server and Tentacle. En OctopusDSC versión 4.0.977 y ... • https://github.com/OctopusDeploy/OctopusDSC/commit/24b448e6ac964ed938475add494a145c0473ac42 • CWE-319: Cleartext Transmission of Sensitive Information •