Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-2256

Опубликовано: 16 сент. 2013
Источник: nvd
CVSS2: 6
EPSS Низкий

Описание

OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-2 does not properly enforce the os-flavor-access:is_public property, which allows remote authenticated users to obtain sensitive information (flavor properties), boot arbitrary flavors, and possibly have other unspecified impacts by guessing the flavor id.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openstack:nova:*:*:*:*:*:*:*:*
Версия от 2013.1 (включая) до 2013.1.3 (исключая)
cpe:2.3:a:openstack:nova:2013.2:milestone1:*:*:*:*:*:*

EPSS

Процентиль: 64%
0.00472
Низкий

6 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 12 лет назад

OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-2 does not properly enforce the os-flavor-access:is_public property, which allows remote authenticated users to obtain sensitive information (flavor properties), boot arbitrary flavors, and possibly have other unspecified impacts by guessing the flavor id.

redhat
больше 12 лет назад

OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-2 does not properly enforce the os-flavor-access:is_public property, which allows remote authenticated users to obtain sensitive information (flavor properties), boot arbitrary flavors, and possibly have other unspecified impacts by guessing the flavor id.

debian
больше 12 лет назад

OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-2 do ...

github
больше 3 лет назад

OpenStack Compute (Nova) allows remote authenticated users to obtain sensitive information

EPSS

Процентиль: 64%
0.00472
Низкий

6 Medium

CVSS2

Дефекты

CWE-264