Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-10898

Опубликовано: 22 июн. 2018
Источник: redhat
CVSS3: 8.8
EPSS Низкий

Описание

A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.

When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux OpenStack Platform 7 (Kilo)openstack-tripleo-heat-templatesNot affected
Red Hat OpenStack Platform 10 (Newton)openstack-tripleo-heat-templatesNot affected
Red Hat OpenStack Platform 11 (Ocata)openstack-tripleo-heat-templatesNot affected
Red Hat OpenStack Platform 12 (Pike)openstack-tripleo-heat-templatesNot affected
Red Hat OpenStack Platform 8 (Liberty)openstack-tripleo-heat-templatesNot affected
Red Hat OpenStack Platform 9 (Mitaka)openstack-tripleo-heat-templatesNot affected
Red Hat OpenStack Platform 13.0 (Queens)openstack-tripleo-commonFixedRHSA-2018:221419.07.2018
Red Hat OpenStack Platform 13.0 (Queens)openstack-tripleo-heat-templatesFixedRHSA-2018:221419.07.2018
Red Hat OpenStack Platform 13.0 (Queens)puppet-opendaylightFixedRHSA-2018:221419.07.2018
Red Hat OpenStack Platform 13.0 (Queens)python-tripleoclientFixedRHSA-2018:221419.07.2018

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-798
https://bugzilla.redhat.com/show_bug.cgi?id=1600360openstack-tripleo-heat-templates: Default ODL deployment uses hard coded administrative credentials

EPSS

Процентиль: 39%
0.00177
Низкий

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 7 лет назад

A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.

CVSS3: 8.8
nvd
больше 7 лет назад

A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.

CVSS3: 8.8
debian
больше 7 лет назад

A vulnerability was found in openstack-tripleo-heat-templates before v ...

CVSS3: 8.8
github
больше 3 лет назад

A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.

EPSS

Процентиль: 39%
0.00177
Низкий

8.8 High

CVSS3