A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows users on managed clusters to gain access to credentials. The impact depends on the credentials exposed This issue affects: SUSE Rancher Rancher versions prior to 2.5.17; Rancher versions prior to 2.6.10; Rancher versions prior to 2.7.1.
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Rancher | Suse | 2.5.0 (including) | 2.5.17 (excluding) |
Rancher | Suse | 2.6.0 (including) | 2.6.10 (excluding) |
Rancher | Suse | 2.7.0 (including) | 2.7.1 (excluding) |