Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-1865

Опубликовано: 20 мар. 2013
Источник: redhat
CVSS2: 4

Описание

OpenStack Keystone Folsom (2012.2) does not properly perform revocation checks for Keystone PKI tokens when done through a server, which allows remote attackers to bypass intended access restrictions via a revoked PKI token.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-285
https://bugzilla.redhat.com/show_bug.cgi?id=922230keystone: online validation of Keystone PKI tokens bypasses revocation check

4 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

OpenStack Keystone Folsom (2012.2) does not properly perform revocation checks for Keystone PKI tokens when done through a server, which allows remote attackers to bypass intended access restrictions via a revoked PKI token.

nvd
больше 13 лет назад

OpenStack Keystone Folsom (2012.2) does not properly perform revocation checks for Keystone PKI tokens when done through a server, which allows remote attackers to bypass intended access restrictions via a revoked PKI token.

debian
больше 13 лет назад

OpenStack Keystone Folsom (2012.2) does not properly perform revocatio ...

CVSS3: 5.3
github
около 4 лет назад

OpenStack Keystone Improper Authentication vulnerability

4 Medium

CVSS2