Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-9185

Опубликовано: 04 нояб. 2016
Источник: nvd
CVSS3: 4.3
CVSS2: 4
EPSS Низкий

Описание

In OpenStack Heat, by launching a new Heat stack with a local URL an authenticated user may conduct network discovery revealing internal network configuration. Affected versions are <=5.0.3, >=6.0.0 <=6.1.0, and ==7.0.0.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:openstack:heat:5.0.3:*:*:*:*:*:*:*
cpe:2.3:a:openstack:heat:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:heat:6.1.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:heat:7.0.0:*:*:*:*:*:*:*

EPSS

Процентиль: 66%
0.00527
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 9 лет назад

In OpenStack Heat, by launching a new Heat stack with a local URL an authenticated user may conduct network discovery revealing internal network configuration. Affected versions are <=5.0.3, >=6.0.0 <=6.1.0, and ==7.0.0.

CVSS3: 3.5
redhat
около 9 лет назад

In OpenStack Heat, by launching a new Heat stack with a local URL an authenticated user may conduct network discovery revealing internal network configuration. Affected versions are <=5.0.3, >=6.0.0 <=6.1.0, and ==7.0.0.

CVSS3: 4.3
debian
около 9 лет назад

In OpenStack Heat, by launching a new Heat stack with a local URL an a ...

CVSS3: 4.3
github
больше 3 лет назад

In OpenStack Heat, by launching a new Heat stack with a local URL an authenticated user may conduct network discovery revealing internal network configuration. Affected versions are <=5.0.3, >=6.0.0 <=6.1.0, and ==7.0.0.

EPSS

Процентиль: 66%
0.00527
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-200