Show filters
1 Total Results
Displaying 1-1 of 1
Sort by:
Attacker Value
Unknown

Bosh Deployment logs leak sensitive information

Disclosure Date: June 19, 2019 (last updated November 27, 2024)
Cloud Foundry BOSH 270.x versions prior to v270.1.1, contain a BOSH Director that does not properly redact credentials when configured to use a MySQL database. A local authenticated malicious user may read any credentials that are contained in a BOSH manifest.