CVE-2012-0434
SUSE Cloud 1.0 - Unprotected Sensitive Data Exposure via Crowbar Production Log
Title source: llmDescription
The server in Crowbar, as used in SUSE Cloud 1.0, uses weak permissions for the production.log file, which has unspecified impact and attack vectors.
References (3)
Core 3
Core References
Vendor Advisory x_refsource_confirm
https://www.suse.com/support/update/announcement/2013/suse-ru-20130020-1.html
Issue Tracking x_refsource_misc
https://bugzilla.novell.com/show_bug.cgi?id=784857
Vendor Advisory x_refsource_confirm
https://support.novell.com/security/cve/CVE-2012-0434.html
Scores
EPSS
0.0022
EPSS Percentile
43.9%
Details
CWE
CWE-264
Status
published
Products (1)
novell/suse_cloud
1.0
Published
Dec 02, 2013
Tracked Since
Feb 18, 2026