Vulnerabilities > Alpinelinux > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-07-05 CVE-2021-36158 Cleartext Storage of Sensitive Information vulnerability in Alpinelinux Aports
In the xrdp package (in branches through 3.14) for Alpine Linux, RDP sessions are vulnerable to man-in-the-middle attacks because pre-generated RSA certificates and private keys are used.
network
high complexity
alpinelinux CWE-312
5.9
2019-06-18 CVE-2019-12875 Missing Authorization vulnerability in Alpinelinux Abuild
Alpine Linux abuild through 3.4.0 allows an unprivileged member of the abuild group to add an untrusted package via a --keys-dir option that causes acceptance of an untrusted signing key.
network
low complexity
alpinelinux CWE-862
6.5