Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-3100

Опубликовано: 18 янв. 2023
Источник: debian
EPSS Низкий

Описание

A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
barbicanfixed1:15.0.0~rc3-1package

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2125404

  • https://review.opendev.org/c/openstack/barbican/+/859852

EPSS

Процентиль: 43%
0.00206
Низкий

Связанные уязвимости

CVSS3: 5.9
ubuntu
около 3 лет назад

A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.

CVSS3: 7.1
redhat
больше 3 лет назад

A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.

CVSS3: 5.9
nvd
около 3 лет назад

A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.

CVSS3: 5.9
redos
10 дней назад

Уязвимость openstack-barbican

CVSS3: 5.9
github
около 3 лет назад

A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.

EPSS

Процентиль: 43%
0.00206
Низкий