Vulnerability Description
The MariaDB audit_plugin component in Pivotal Cloud Foundry (PCF) cf-mysql-release 27 and 28 allows remote attackers to obtain sensitive information by reading syslog messages, as demonstrated by cleartext credentials.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pivotal Software | Cloud Foundry Cf Mysql | 27.0 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/93480
- https://pivotal.io/security/cve-2016-6653Vendor Advisory
- http://www.securityfocus.com/bid/93480
- https://pivotal.io/security/cve-2016-6653Vendor Advisory
FAQ
What is CVE-2016-6653?
CVE-2016-6653 is a vulnerability with a CVSS score of 7.5 (HIGH). The MariaDB audit_plugin component in Pivotal Cloud Foundry (PCF) cf-mysql-release 27 and 28 allows remote attackers to obtain sensitive information by reading syslog messages, as demonstrated by clea...
How severe is CVE-2016-6653?
CVE-2016-6653 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-6653?
Check the references section above for vendor advisories and patch information. Affected products include: Pivotal Software Cloud Foundry Cf Mysql.