When creating an OPERATOR user account on the BMC, the redfish plugin saved the auto-generated password to /etc/fwupd/redfish.conf without proper restriction, allowing any user on the system to read the same configuration file.
CVSS Details
- CVSS 3.1 Base Score: 6.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | alma-upgrade-fwupdalma-upgrade-fwupd-develalma-upgrade-fwupd-plugin-flashrom | May 15, 2023 | Sep 28, 2022 | |
| Centos_linux | — | centos-upgrade-fwupdcentos-upgrade-fwupd-debuginfocentos-upgrade-fwupd-debugsourcecentos-upgrade-fwupd-plugin-flashromcentos-upgrade-fwupd-plugin-flashrom-debuginfocentos-upgrade-fwupd-tests-debuginfo | May 15, 2023 | Sep 28, 2022 |
| Debian | debian-upgrade-fwupd | Jul 30, 2024 | Sep 28, 2022 | |
| Oracle_linux | — | oracle-linux-upgrade-fwupdoracle-linux-upgrade-fwupd-develoracle-linux-upgrade-fwupd-plugin-flashrom | May 19, 2023 | Sep 22, 2022 |
| Redhat_linux | redhat-upgrade-fwupdredhat-upgrade-fwupd-debuginforedhat-upgrade-fwupd-debugsourceredhat-upgrade-fwupd-develredhat-upgrade-fwupd-plugin-flashromredhat-upgrade-fwupd-plugin-flashrom-debuginforedhat-upgrade-fwupd-tests-debuginfo | May 15, 2023 | Sep 28, 2022 | |
| Rocky_linux | rocky-upgrade-fwupdrocky-upgrade-fwupd-debuginforocky-upgrade-fwupd-debugsourcerocky-upgrade-fwupd-devel | Mar 5, 2024 | Sep 28, 2022 | |
| Suse | — | suse-upgrade-fwupdsuse-upgrade-fwupd-bash-completionsuse-upgrade-fwupd-develsuse-upgrade-fwupd-langsuse-upgrade-libfwupd2suse-upgrade-typelib-1_0-fwupd-2_0 | Jun 13, 2023 | Sep 28, 2022 |
| Ubuntu | no-fix-ubuntu-package | Jun 26, 2025 | Sep 28, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub