Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM Cloud Private 2.1.0 , 3.1.0, 3.1.1, and 3.1.2 could allow a local privileged user to obtain sensitive OIDC token that is printed to log files, which could be used to log in to the system as another user. IBM X-Force ID: 160512.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Cloud Private 日志信息泄露漏洞
Vulnerability Description
IBM Cloud Private是美国IBM公司的一套企业私有云解决方案。该产品主要基于Kubernetes和容器技术搭建。 IBM Cloud Private中存在安全漏洞。本地攻击者可利用该漏洞获取打印在日志文件中敏感的OIDC令牌。以下产品及版本受到影响:IBM Cloud Private 2.1.x版本,3.1.0版本,3.1.1版本,3.1.2版本。
CVSS Information
N/A
Vulnerability Type
N/A