ZeroHour

CVE-2017-9271

CVSS 3.1
3.3 low
EPSS
<1%p26
Published
()
Modified
Description

The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used.

Vendors
opensusefedoraproject
Products
zypper, fedora
Weakness
CWE-532
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.