High severity8.4NVD Advisory· Published Nov 28, 2017· Updated May 13, 2026
CVE-2017-8001
CVE-2017-8001
Description
An issue was discovered in EMC ScaleIO 2.0.1.x. In a Linux environment, one of the support scripts saves the credentials of the ScaleIO MDM user who executed the script in clear text in temporary log files. The temporary files may potentially be read by an unprivileged user with access to the server where the script was executed to recover exposed credentials.
Affected products
4cpe:2.3:a:dell:emc_scaleio:2.0.1.0:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:dell:emc_scaleio:2.0.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:dell:emc_scaleio:2.0.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:dell:emc_scaleio:2.0.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:dell:emc_scaleio:2.0.1.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- seclists.org/fulldisclosure/2017/Nov/35nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/101997nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.