CVE-2021-20228
CVE-2021-20228
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 2.0%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
29 abr 2021Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A flaw was found in the Ansible Engine 2.9.18, where sensitive info is not masked by default and is not protected by the no_log feature when using the sub-option feature of the basic.py module. This flaw allows an attacker to obtain sensitive information. The highest threat from this vulnerability is to confidentiality.
Productos afectados
n/a · ansible¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →