CVE-2014-0201: Red Hat Rhevm-Reports
Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.
ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports package (rhevm-reports) before 3.3.3, uses world-readable permissions on configuration files, which allows local users to obtain sensitive information by reading the files.
Affected products
- Red Hat Rhevm-Reports: up to and including 3.3; version 3.0 only; version 3.1 only; version 3.2 only
Published 2014-05-29. Last modified 2026-06-17.