Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MySQL password as a command line argument, and sometimes transmits cleartext e-mail containing this command line, which allows context-dependent attackers to obtain the password by listing the process and its arguments, or by sniffing the network.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bacula make_catalog_backup MySQL信息泄露漏洞
Vulnerability Description
Bacula 2.2.5版本以及可能的早期版本的make_catalog_backup,发送把命令行参数作为MySQL密码发送,并有时候传输包含该命令行的空白邮件文本,这会允许见机行事的攻击者通过列出程序和自变量或欺骗网络,获得密码。
CVSS Information
N/A
Vulnerability Type
N/A