漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Myhoard logs backup encryption key in plain text
Vulnerability Description
MyHoard is a daemon for creating, managing and restoring MySQL backups. Starting in version 1.0.1 and prior to version 1.3.0, in some cases, myhoard logs the whole backup info, including the encryption key. Version 1.3.0 fixes the issue. As a workaround, direct logs into /dev/null.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Vulnerability Type
将私有的资源传输到一个新的空间(资源泄露)
Vulnerability Title
MyHoard 安全漏洞
Vulnerability Description
MyHoard是Aiven Open开源的一个数据库备份恢复工具。 MyHoard 1.3.0之前版本存在安全漏洞,该漏洞源于日志记录备份信息不当,可能导致加密密钥泄露。
CVSS Information
N/A
Vulnerability Type
N/A