Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-0056

Опубликовано: 08 мая 2014
Источник: nvd
CVSS2: 2.1
EPSS Низкий

Описание

The l3-agent in OpenStack Neutron 2012.2 before 2013.2.3 does not check the tenant id when creating ports, which allows remote authenticated users to plug ports into the routers of arbitrary tenants via the device id in a port-create command.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openstack:neutron:2012.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2012.2.1:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2012.2.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2012.2.3:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2012.2.4:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.1:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.1.1:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.1.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.1.3:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.1.4:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.1.5:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.2.1:*:*:*:*:*:*:*
cpe:2.3:a:openstack:neutron:2013.2.2:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*

EPSS

Процентиль: 71%
0.01433
Низкий

2.1 Low

CVSS2

Дефекты

CWE-287

Связанные уязвимости

ubuntu
больше 12 лет назад

The l3-agent in OpenStack Neutron 2012.2 before 2013.2.3 does not check the tenant id when creating ports, which allows remote authenticated users to plug ports into the routers of arbitrary tenants via the device id in a port-create command.

redhat
больше 12 лет назад

The l3-agent in OpenStack Neutron 2012.2 before 2013.2.3 does not check the tenant id when creating ports, which allows remote authenticated users to plug ports into the routers of arbitrary tenants via the device id in a port-create command.

debian
больше 12 лет назад

The l3-agent in OpenStack Neutron 2012.2 before 2013.2.3 does not chec ...

github
больше 4 лет назад

OpenStack Neutron Improper Authentication vulnerability

EPSS

Процентиль: 71%
0.01433
Низкий

2.1 Low

CVSS2

Дефекты

CWE-287