CVE-2022-45154
A Cleartext Storage of Sensitive Information vulnerability in suppportutils of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15, SUSE Linux Enterprise Server 15 SP3 allows attackers that get access to the support logs to gain knowledge of the stored credentials This issue affects: SUSE Linux Enterprise Server 12 supportutils version 3.0.10-95.51.1CWE-312: Cleartext Storage of Sensitive Information and prior versions. SUSE Linux Enterprise Server 15 supportutils version 3.1.21-150000.5.44.1 and prior versions. SUSE Linux Enterprise Server 15 SP3 supportutils version 3.1.21-150300.7.35.15.1 and prior versions.
- Affected products
- Suse Linux Enterprise Server 12, Suse Linux Enterprise Server 15, Suse Linux Enterprise Server 15 Sp3, Suse, Supportutils
- Opensuse Supportutils
- ≤ 3.0.10-95.51.1
- Fix
- Available
- CVSS 3.1
- 5.5 MEDIUM
- EPSS
- 0.2% (7th percentile)
- Weakness
- CWE-312
- NVD status
- Modified
- Published
- 2023-02-15
No indexed exploits for CVE-2022-45154 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2022-45154 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.