AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-1075

MEDIUM · CVSS 5 EPSS 0.35%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-06-12 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-1075
Severity
MEDIUM
CVSS
5
EPSS
0.35%

Original NVD Description

ovirt-engine up to version 4.2.3 is vulnerable to an unfiltered password when choosing manual db provisioning. When engine-setup was run and one chooses to provision the database manually or connect to a remote database, the password input was logged in cleartext during the verification step. Sharing the provisioning log might inadvertently leak database passwords.