Логотип exploitDog
bind:CVE-2015-7546
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-7546

Количество 5

Количество 5

ubuntu логотип

CVE-2015-7546

около 10 лет назад

The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass intended access restrictions and gain access to cloud resources by manipulating byte fields within a revoked token.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2015-7546

около 10 лет назад

The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass intended access restrictions and gain access to cloud resources by manipulating byte fields within a revoked token.

CVSS2: 5.8
EPSS: Низкий
nvd логотип

CVE-2015-7546

около 10 лет назад

The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass intended access restrictions and gain access to cloud resources by manipulating byte fields within a revoked token.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2015-7546

около 10 лет назад

The identity service in OpenStack Identity (Keystone) before 2015.1.3 ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-8c4w-v65p-jvcv

больше 3 лет назад

OpenStack Identity Keystone and keystonemiddleware Insufficiently Protected Credentials

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-7546

The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass intended access restrictions and gain access to cloud resources by manipulating byte fields within a revoked token.

CVSS3: 7.5
0%
Низкий
около 10 лет назад
redhat логотип
CVE-2015-7546

The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass intended access restrictions and gain access to cloud resources by manipulating byte fields within a revoked token.

CVSS2: 5.8
0%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-7546

The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass intended access restrictions and gain access to cloud resources by manipulating byte fields within a revoked token.

CVSS3: 7.5
0%
Низкий
около 10 лет назад
debian логотип
CVE-2015-7546

The identity service in OpenStack Identity (Keystone) before 2015.1.3 ...

CVSS3: 7.5
0%
Низкий
около 10 лет назад
github логотип
GHSA-8c4w-v65p-jvcv

OpenStack Identity Keystone and keystonemiddleware Insufficiently Protected Credentials

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу