Описание
OpenStack Object Storage (Swift) before 2.4.0 allows attackers to obtain sensitive information via a PUT tempurl and a DLO object manifest that references an object in another container.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.3.0 (включая)
cpe:2.3:a:openstack:swift:*:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.01146
Низкий
5 Medium
CVSS2
Дефекты
CWE-200
Связанные уязвимости
ubuntu
больше 10 лет назад
OpenStack Object Storage (Swift) before 2.4.0 allows attackers to obtain sensitive information via a PUT tempurl and a DLO object manifest that references an object in another container.
redhat
больше 10 лет назад
OpenStack Object Storage (Swift) before 2.4.0 allows attackers to obtain sensitive information via a PUT tempurl and a DLO object manifest that references an object in another container.
debian
больше 10 лет назад
OpenStack Object Storage (Swift) before 2.4.0 allows attackers to obta ...
EPSS
Процентиль: 78%
0.01146
Низкий
5 Medium
CVSS2
Дефекты
CWE-200