CVE-2014-8938: High severity piwigo vulnerability
Published Jun 1, 2020
·Updated
Lexiglot through 2014-11-20 allows local users to obtain sensitive information by listing a process because the username and password are on the command line.
Affected Software
1 affected component
piwigo Lexiglot<=2014-11-20
Event History
Jun 1, 2020
CVE Published
via MITRE·04:25 PM
Data Sourced
via MITRE·04:25 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2014-8938.
2
What is the severity of CVE-2014-8938?
The severity of CVE-2014-8938 is high with a severity value of 7.8.
3
What is the description of CVE-2014-8938?
CVE-2014-8938 allows local users to obtain sensitive information by listing a process because the username and password are on the command line.
4
Which software is affected by CVE-2014-8938?
Lexiglot through 2014-11-20 is affected by CVE-2014-8938.
5
How can the vulnerability CVE-2014-8938 be exploited?
CVE-2014-8938 can be exploited by local users who have access to the command line.