Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-5040

Опубликовано: 05 янв. 2016
Источник: nvd
CVSS3: 6.8
CVSS2: 4.6
EPSS Низкий

Описание

HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2.x before 4.2.1 allow remote authenticated users to bypass intended access restrictions and modify arbitrary (1) access key credentials by leveraging knowledge of a key ID or (2) signing certificates by leveraging knowledge of a certificate ID.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:eucalyptus:eucalyptus:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:eucalyptus:eucalyptus:4.2.0:*:*:*:*:*:*:*

EPSS

Процентиль: 27%
0.00093
Низкий

6.8 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

CVSS3: 6.8
debian
около 10 лет назад

HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2. ...

CVSS3: 6.8
github
больше 3 лет назад

HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2.x before 4.2.1 allow remote authenticated users to bypass intended access restrictions and modify arbitrary (1) access key credentials by leveraging knowledge of a key ID or (2) signing certificates by leveraging knowledge of a certificate ID.

EPSS

Процентиль: 27%
0.00093
Низкий

6.8 Medium

CVSS3

4.6 Medium

CVSS2

Дефекты

CWE-264