Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-45154


A Cleartext Storage of Sensitive Information vulnerability in suppportutils of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15, SUSE Linux Enterprise Server 15 SP3 allows attackers that get access to the support logs to gain knowledge of the stored credentials This issue affects: SUSE Linux Enterprise Server 12 supportutils version 3.0.10-95.51.1CWE-312: Cleartext Storage of Sensitive Information and prior versions. SUSE Linux Enterprise Server 15 supportutils version 3.1.21-150000.5.44.1 and prior versions. SUSE Linux Enterprise Server 15 SP3 supportutils version 3.1.21-150300.7.35.15.1 and prior versions.


Published

2023-02-15T10:15:17.377

Last Modified

2024-11-21T07:28:51.833

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.4 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-312

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application opensuse supportutils ≤ 3.0.10-95.51.1 Yes
Operating System suse linux_enterprise_server 12 No
Application opensuse supportutils ≤ 3.1.21-150000.5.44.1 Yes
Operating System suse linux_enterprise_server 15 No
Application opensuse supportutils ≤ 3.1.21-150300.7.35.15.1 Yes
Operating System suse linux_enterprise_server 15 No

References