A vulnerability in Zowe CLI allows local, privileged actors to display securely stored properties in cleartext within a terminal using the '--show-inputs-only' flag.
References
Link | Resource |
---|---|
https://github.com/zowe/zowe-cli/packages/imperative | Broken Link |
https://github.com/zowe/zowe-cli/packages/imperative | Broken Link |
Configurations
History
No history.
Information
Published : 2024-07-19 11:15
Updated : 2024-11-21 09:50
NVD link : CVE-2024-6916
Mitre link : CVE-2024-6916
CVE.ORG link : CVE-2024-6916
JSON object : View
Products Affected
zowe
- zowe_cli
CWE
CWE-922
Insecure Storage of Sensitive Information