ZeroHour

CVE-2021-25644

CVSS 3.1
7.5 high
EPSS
<1%p48
Published
()
Modified
Description

An issue was discovered in Couchbase Server 5.x and 6.x through 6.6.1 and 7.0.0 Beta. Incorrect commands to the REST API can result in leaked authentication information being stored in cleartext in the debug.log and info.log files, and is also shown in the UI visible to administrators.

Vendors
couchbase
Products
couchbase server
Weakness
CWE-312
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.