Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2ppf-2m6f-6v6f

Опубликовано: 17 нояб. 2024
Источник: github
Github: Прошло ревью
CVSS3: 5.5

Описание

OpenStack improperly deletes access rules

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

Пакеты

Наименование

python-openstackclient

pip
Затронутые версииВерсия исправления

< 6.3.0

6.3.0

EPSS

Процентиль: 31%
0.00115
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-237

Связанные уязвимости

CVSS3: 5.5
ubuntu
7 месяцев назад

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

CVSS3: 5.5
redhat
больше 1 года назад

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

CVSS3: 5.5
nvd
7 месяцев назад

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

CVSS3: 5.5
debian
7 месяцев назад

A flaw was found in OpenStack. When a user tries to delete a non-exist ...

CVSS3: 5.5
redos
7 месяцев назад

Уязвимость python3-openstackclient

EPSS

Процентиль: 31%
0.00115
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-237