CVE-2014-0202: Red Hat Rhevm-Dwh

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The setup script in ovirt-engine-dwh, as used in the Red Hat Enterprise Virtualization Manager data warehouse (rhevm-dwh) package before 3.3.3, stores the history database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.

Affected products

  • Red Hat Rhevm-Dwh: up to and including 3.3.2

Published 2014-05-30. Last modified 2026-06-17.