CVE-2019-10194: Medium severity ovirt vulnerability
Sensitive passwords used in deployment and configuration of oVirt Metrics were found to be insufficiently protected. Passwords could be disclosed in log files (if playbooks are run with -v) or in playbooks stored on Metrics or Bastion hosts.
Other sources
Sensitive passwords used in deployment and configuration of oVirt Metrics, all versions. were found to be insufficiently protected. Passwords could be disclosed in log files (if playbooks are run with -v) or in playbooks stored on Metrics or Bastion hosts.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-10194?
CVE-2019-10194 is a vulnerability that affects oVirt Metrics and Redhat Virtualization Manager versions 4.3. It allows sensitive passwords used in deployment and configuration of the software to be disclosed in log files or playbooks.
How severe is CVE-2019-10194?
CVE-2019-10194 has a severity score of 5.5, which is classified as medium.
Which software versions are affected by CVE-2019-10194?
CVE-2019-10194 affects all versions of oVirt Metrics and specifically version 4.3 of Redhat Virtualization Manager.
How can sensitive passwords be disclosed in CVE-2019-10194?
Sensitive passwords can be disclosed in log files if playbooks are run with the -v flag or in playbooks stored on Metrics or Bastion hosts.
Where can I find more information about CVE-2019-10194?
You can find more information about CVE-2019-10194 at the following references: [1] [2] [3]