Information Disclosure Vulnerability in Ansible's vvv+ Mode with no_log

Information Disclosure Vulnerability in Ansible's vvv+ Mode with no_log

CVE-2018-16876 · MEDIUM Severity

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N

ansible before versions 2.5.14, 2.6.11, 2.7.5 is vulnerable to a information disclosure flaw in vvv+ mode with no_log on that can lead to leakage of sensible data.

Learn more about our Web Application Penetration Testing UK.