Vulnerabilities > Redhat > Enterprise Virtualization > 3.6

DATE CVE VULNERABILITY TITLE RISK
2017-08-22 CVE-2016-6310 Information Exposure vulnerability in Redhat Enterprise Virtualization
oVirt Engine discloses the ENGINE_HTTPS_PKI_TRUST_STORE_PASSWORD in /var/log/ovirt-engine/engine.log file in RHEV before 4.0.
local
low complexity
redhat CWE-200
5.5
2016-12-14 CVE-2016-4443 Information Exposure Through Log Files vulnerability in Redhat Enterprise Virtualization 3.6
Red Hat Enterprise Virtualization (RHEV) Manager 3.6 allows local users to obtain encryption keys, certificates, and other sensitive information by reading the engine-setup log file.
local
low complexity
redhat CWE-532
5.5