CVE-2019-0179
MEDIUMIntel Open Cloud Integrity Tehnology - Insufficiently Protected Credentials
Title source: ruleDescription
Insufficient password protection in the attestation database for Open CIT may allow an authenticated user to potentially enable information disclosure via local access.
Scores
CVSS v3
4.4
EPSS
0.0004
EPSS Percentile
13.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Classification
CWE
CWE-522
Status
published
Affected Products (2)
intel/open_cloud_integrity_tehnology
intel/openattestation
Timeline
Published
Jun 13, 2019
Tracked Since
Feb 18, 2026