CVE-2012-0434 describes a critical vulnerability in SUSE Cloud 1.0, specifically within the Crowbar server component, where the production.log file has weak permissions. This flaw allows for unspecified but potentially severe impact, including complete compromise of confidentiality, integrity, and availability, as indicated by its CVSS score of 10.0. While the vulnerability is highly severe and easily exploitable over the network without authentication, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding it.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.0CPE matchmatch criteria | cpe:2.3:a:novell:suse_cloud:1.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.