A path traversal flaw was found in the Ceph dashboard implemented in upstream versions v14.2.5, v14.2.6, v15.0.0 of Ceph storage and has been fixed in versions 14.2.7 and 15.1.0. An unauthenticated attacker could use this flaw to cause information disclosure on the host machine running the Ceph dashboard.
References
Link Resource
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1699 Issue Tracking Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2020-04-21T15:27:07

Updated: 2020-04-21T15:27:07

Reserved: 2019-11-27T00:00:00


Link: CVE-2020-1699

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2020-04-21T17:15:12.867

Modified: 2023-11-07T03:19:27.393


Link: CVE-2020-1699

JSON object: View

cve-icon Redhat Information

No data.