← back
CVE-2020-14301

CVE-2020-14301

EPSS 1.2%CWE-212
An information disclosure vulnerability was found in libvirt in versions before 6.3.0. HTTP cookies used to access network-based disks were saved in the XML dump of the guest domain. This flaw allows an attacker to access potentially sensitive information in the domain configuration via the `dumpxml` command.
Affected products
n/a · libvirt

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →