Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wqpv-c3pp-3m58

Опубликовано: 28 апр. 2026
Источник: github
Github: Прошло ревью
CVSS3: 6.6

Описание

OpenStack Ironic is Vulnerable to Inclusion of Functionality from Untrusted Control Sphere

OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.

Пакеты

Наименование

ironic

pip
Затронутые версииВерсия исправления

< 35.0.1

35.0.1

EPSS

Процентиль: 43%
0.00548
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-829

Связанные уязвимости

CVSS3: 6.6
ubuntu
3 месяца назад

OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.

CVSS3: 6.6
redhat
3 месяца назад

OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.

CVSS3: 6.6
nvd
3 месяца назад

OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-default configuration that has a console interface.

CVSS3: 6.6
debian
3 месяца назад

OpenStack Ironic before 35.0.1 allows ipmitool execution in a non-defa ...

EPSS

Процентиль: 43%
0.00548
Низкий

6.6 Medium

CVSS3

Дефекты

CWE-829