Skip to content

CVE-2014-0135

Kafo before 0.3.17 and 0.4.x before 0.5.2, as used by Foreman, uses world-readable permissions for default_values.yaml, which allows local users to obtain passwords and other sensitive information by reading the file.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0010 (0.1%)
Percentil: 27.1%
EPSS: 2026-05-06

Afecta

theforeman:kafo

Descripción técnica

Kafo before 0.3.17 and 0.4.x before 0.5.2, as used by Foreman, uses world-readable permissions for default_values.yaml, which allows local users to obtain passwords and other sensitive information by reading the file.

Publicada: 8/5/2014, 14:29:13
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo