When configuring Octopus Server if it is configured with an external SQL database, on initial configuration the database password is written to the OctopusServer.txt log file in plaintext.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:06
Type | Values Removed | Values Added |
---|---|---|
References | () https://advisories.octopus.com/adv/2021-06---Cleartext-Storage-of-Sensitive-Information-%28CVE-2021-31817%29.2121138201.html - |
07 Nov 2023, 03:35
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2021-07-08 11:15
Updated : 2024-11-21 06:06
NVD link : CVE-2021-31817
Mitre link : CVE-2021-31817
CVE.ORG link : CVE-2021-31817
JSON object : View
Products Affected
octopus
- server
CWE
CWE-312
Cleartext Storage of Sensitive Information