← Back

CVE-2017-8001

nvd nist
Published: Nov 28, 2017Modified: May 13, 2026

JSON object

Loading...
8.4
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.5 / Impact: 5.9
Source: NVD

Description

An issue was discovered in EMC ScaleIO 2.0.1.x. In a Linux environment, one of the support scripts saves the credentials of the ScaleIO MDM user who executed the script in clear text in temporary log files. The temporary files may potentially be read by an unprivileged user with access to the server where the script was executed to recover exposed credentials.

Affected (4)

Products: Dell: Emc Scaleio
1 product
Emc Scaleio
Configuration A
4 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Dell
Version 2.0.1.0
Version 2.0.1.1
Version 2.0.1.2
Version 2.0.1.3
Running on/withPlatform Versions
Linux
Linux Kernel
All versions

References (4)

Source: security_alert@emc.com
Mailing ListThird Party Advisory
Source: security_alert@emc.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.