Vulnerabilities > Redhat > Ceph > 16.1.0

DATE CVE VULNERABILITY TITLE RISK
2021-01-08 CVE-2020-25678 Cleartext Storage of Sensitive Information vulnerability in multiple products
A flaw was found in ceph in versions prior to 16.y.z where ceph stores mgr module passwords in clear text.
local
low complexity
redhat fedoraproject CWE-312
4.4
2020-12-18 CVE-2020-27781 Insufficiently Protected Credentials vulnerability in multiple products
User credentials can be manipulated and stolen by Native CephFS consumers of OpenStack Manila, resulting in potential privilege escalation.
local
low complexity
redhat fedoraproject CWE-522
7.1