CVE-2021-31816

W

hen configuring Octopus Server if it is configured with an external SQL database, on initial configuration the database password is written to the OctopusServer.txt log file in plaintext.

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:octopus:server:*:*:*:*:*:*:*:*
cpe:2.3:a:octopus:server:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:06

Type Values Removed Values Added
References () https://advisories.octopus.com/adv/2021-05---Cleartext-Storage-of-Sensitive-Information-%28CVE-2021-31816%29.2121793537.html - () https://advisories.octopus.com/adv/2021-05---Cleartext-Storage-of-Sensitive-Information-%28CVE-2021-31816%29.2121793537.html -

Information

Published : 2021-07-08 11:15

Updated : 2024-11-21 06:06


NVD link : CVE-2021-31816

Mitre link : CVE-2021-31816

CVE.ORG link : CVE-2021-31816


JSON object : View

Products Affected
CWE
CWE-312

Cleartext Storage of Sensitive Information