CVE Vulnerabilities

CVE-2016-6340

Published: Sep 22, 2016 | Modified: Apr 12, 2025
CVSS 3.x
8.4
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
1.2 LOW
AV:L/AC:H/Au:N/C:P/I:N/A:N
RedHat/V3
1.9 LOW
CVSS:3.0/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N
Ubuntu
root.io logo minimus.io logo echo.ai logo

The kickstart file in Red Hat QuickStart Cloud Installer (QCI) forces use of MD5 passwords on deployed systems, which makes it easier for attackers to determine cleartext passwords via a brute-force attack.

Affected Software

NameVendorStart VersionEnd Version
Quickstart_cloud_installerRedhat- (including)- (including)

References