ZeroHour

CVE-2020-10750

CVSS 3.1
5.5 medium
EPSS
<1%p36
Published
()
Modified
Description

Sensitive information written to a log file vulnerability was found in jaegertracing/jaeger before version 1.18.1 when the Kafka data store is used. This flaw allows an attacker with access to the container's log file to discover the Kafka credentials.

Vendors
linuxfoundation
Products
jaeger
Weakness
CWE-200, CWE-532
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.