Логотип exploitDog
bind:CVE-2022-47951
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-47951

Количество 6

Количество 6

ubuntu логотип

CVE-2022-47951

около 3 лет назад

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.

CVSS3: 5.7
EPSS: Низкий
redhat логотип

CVE-2022-47951

около 3 лет назад

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.

CVSS3: 7.7
EPSS: Низкий
nvd логотип

CVE-2022-47951

около 3 лет назад

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.

CVSS3: 5.7
EPSS: Низкий
debian логотип

CVE-2022-47951

около 3 лет назад

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before ...

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-7h75-hwxx-qpgc

около 3 лет назад

OpenStack Cinder, glance, and Nova vulnerable to Path Traversal

CVSS3: 5.7
EPSS: Низкий
fstec логотип

BDU:2023-00689

около 3 лет назад

Уязвимость сервиса блочного хранения данных Openstack Cinder, связанная с использованием файлов и каталогов, доступных внешним сторонам, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 7.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-47951

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.

CVSS3: 5.7
1%
Низкий
около 3 лет назад
redhat логотип
CVE-2022-47951

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.

CVSS3: 7.7
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2022-47951

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.

CVSS3: 5.7
1%
Низкий
около 3 лет назад
debian логотип
CVE-2022-47951

An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before ...

CVSS3: 5.7
1%
Низкий
около 3 лет назад
github логотип
GHSA-7h75-hwxx-qpgc

OpenStack Cinder, glance, and Nova vulnerable to Path Traversal

CVSS3: 5.7
1%
Низкий
около 3 лет назад
fstec логотип
BDU:2023-00689

Уязвимость сервиса блочного хранения данных Openstack Cinder, связанная с использованием файлов и каталогов, доступных внешним сторонам, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 7.7
1%
Низкий
около 3 лет назад

Уязвимостей на страницу