CVE Vulnerabilities

CVE-2024-36464

Plaintext Storage of a Password

Published: Nov 27, 2024 | Modified: Nov 27, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

When exporting media types, the password is exported in the YAML in plain text. This appears to be a best practices type issue and may have no actual impact. The user would need to have permissions to access the media types and therefore would be expected to have access to these passwords.

Weakness

Storing a password in plaintext may result in a system compromise.

Affected Software

Name Vendor Start Version End Version
Zabbix Ubuntu trusty/esm *

Potential Mitigations

References