CVE-2022-3261
published 2023-09-15CVE-2022-3261: A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages during the OpenStack overcloud update run, leading to a…
PriorityP337high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
0.29%
21.1th percentile
A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages during the OpenStack overcloud update run, leading to a disclosure of sensitive information problem.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | openstack_platform | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
osv7.5HIGH
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
openstack: plain-text passwords saved in /var/log/messages
vendor_redhat·2022-11-18·CVSS 4.4
CVE-2022-3261 [MEDIUM] CWE-256 openstack: plain-text passwords saved in /var/log/messages
openstack: plain-text passwords saved in /var/log/messages
A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages during the OpenStack overcloud update run, leading to a disclosure of sensitive information problem.
A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages during the OpenStack overcloud update run, leading to a disclosure of sensitive information problem.
Package: openstack (Red Hat OpenStack Platform 16.2) - Affected
GHSA
GHSA-95f8-wgwf-v4mc: A flaw was found in OpenStack
ghsa_unreviewed·2023-09-15
CVE-2022-3261 [HIGH] CWE-256 GHSA-95f8-wgwf-v4mc: A flaw was found in OpenStack
A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages during the OpenStack overcloud update run, leading to a disclosure of sensitive information problem.
OSV
CVE-2022-3261: A flaw was found in OpenStack
osv·2023-09-15·CVSS 7.5
CVE-2022-3261 [HIGH] CVE-2022-3261: A flaw was found in OpenStack
A flaw was found in OpenStack. Multiple components show plain-text passwords in /var/log/messages during the OpenStack overcloud update run, leading to a disclosure of sensitive information problem.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-09-15
Published