VYPR
High severity7.8NVD Advisory· Published May 17, 2019· Updated Jun 17, 2026

CVE-2019-10139

CVE-2019-10139

Description

During HE deployment via cockpit-ovirt, cockpit-ovirt generates an ansible variable file /var/lib/ovirt-hosted-engine-setup/cockpit/ansibleVarFileXXXXXX.var which contains the admin and the appliance passwords as plain-text. At the of the deployment procedure, these files are deleted.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:ovirt:cockpit-ovirt:-:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ovirt:cockpit-ovirt:-:*:*:*:*:*:*:*
    • (no CPE)range: n/a
  • Red Hat/oVirtllm-fuzzy

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.