Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5836-grcc-8j89

Опубликовано: 24 сент. 2023
Источник: github
Github: Прошло ревью
CVSS3: 7.4

Описание

OpenStack Heat information leak vulnerability

An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.

Пакеты

Наименование

openstack-heat

pip
Затронутые версииВерсия исправления

< 20.0.0

20.0.0

EPSS

Процентиль: 44%
0.00212
Низкий

7.4 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 7.4
ubuntu
больше 2 лет назад

An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.

CVSS3: 7.4
redhat
около 3 лет назад

An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.

CVSS3: 7.4
nvd
больше 2 лет назад

An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.

CVSS3: 7.4
debian
больше 2 лет назад

An information leak was discovered in OpenStack heat. This issue could ...

EPSS

Процентиль: 44%
0.00212
Низкий

7.4 High

CVSS3

Дефекты

CWE-200