VULNERABILITY INTELLIGENCE
CVE-2012-5658
CVSS score2.1 LOW
EPSS probability0.36%
CISA KEVNot currently listed
Published2013-02-24
Last modified2026-06-16
CVSS vectorAV:L/AC:L/Au:N/C:P/I:N/A:N
Description
rhc-chk.rb in Red Hat OpenShift Origin before 1.1, when -d (debug mode) is used, outputs the password and other sensitive information in cleartext, which allows context-dependent attackers to obtain sensitive information, as demonstrated by including log files or Bugzilla reports in support channels.
Primary references
- secalert@redhat.com — Vendor Advisory
- secalert@redhat.com
- af854a3a-2127-422b-91ae-364da2661108 — Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108