VendorsRed Hatquickstart_cloud_installerany version
Vulnerabilities

Red Hat QuickStart Cloud Installer (QCI) any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2016-6322
Red Hat QuickStart Cloud Installer (QCI) uses world-readable permissions for /etc/qci/answers, which allows local users to obtain the root password for the deployed system by reading the file.
Published 2016-09-22 · Modified
8.4EPSS 0.004
CVE-2016-6340
The kickstart file in Red Hat QuickStart Cloud Installer (QCI) forces use of MD5 passwords on deployed systems, which makes it easier for attackers to determine cleartext passwords via a brute-force attack.
Published 2016-09-22 · Modified
8.4EPSS 0.004