Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-1625

Опубликовано: 24 сент. 2023
Источник: nvd
CVSS3: 7.4
CVSS3: 5
EPSS Низкий

Описание

An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:openstack:heat:-:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:a:redhat:openstack_platform:13.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openstack_platform:16.1:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openstack_platform:16.2:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openstack_platform:17.0:*:*:*:*:*:*:*

EPSS

Процентиль: 44%
0.00212
Низкий

7.4 High

CVSS3

5 Medium

CVSS3

Дефекты

CWE-202
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 7.4
ubuntu
больше 2 лет назад

An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.

CVSS3: 7.4
redhat
около 3 лет назад

An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.

CVSS3: 7.4
debian
больше 2 лет назад

An information leak was discovered in OpenStack heat. This issue could ...

CVSS3: 7.4
github
больше 2 лет назад

OpenStack Heat information leak vulnerability

EPSS

Процентиль: 44%
0.00212
Низкий

7.4 High

CVSS3

5 Medium

CVSS3

Дефекты

CWE-202
NVD-CWE-noinfo