Перейти к содержимому
Noroxi

Записи openstack

292 опубликованных записей вендора openstack.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
7
С записью об исправлении
94,2 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

292 записей
  • CVE-2017-18017
    55В плане

    The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attac

    КритическаяCVSS 9,8Эксплойта нетEPSS 53 %

    linux · linux kernel3 янв. 2018 г.

  • CVE-2017-16613
    42В плане

    An issue was discovered in middleware.py in OpenStack Swauth through 1.2.0 when used with OpenStack Swift through 2.15.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 8 %

    openstack · swauth21 нояб. 2017 г.

  • CVE-2012-4406
    41В плане

    OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata

    КритическаяCVSS 9,8Эксплойта нетEPSS 7 %

    openstack · swift22 окт. 2012 г.

  • CVE-2020-26943
    40В плане

    An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0.

    КритическаяCVSS 9,9Эксплойта нетEPSS 3 %

    openstack · blazar-dashboard16 окт. 2020 г.

  • CVE-2016-4972
    40В плане

    OpenStack Murano before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka), Murano-dashboard before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka)

    КритическаяCVSS 9,8Эксплойта нетEPSS 3 %

    openstack · mitaka-murano26 сент. 2016 г.

  • CVE-2017-7214
    40В плане

    An issue was discovered in exception_wrapper.py in OpenStack Nova 13.x through 13.1.3, 14.x through 14.0.4, and 15.x through 15.0.1.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    openstack · nova21 мар. 2017 г.

  • CVE-2013-2166
    40В плане

    python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache encryption bypass

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    openstack · python-keystoneclient10 дек. 2019 г.

  • CVE-2013-2167
    40В плане

    python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache signing bypass

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    openstack · python-keystoneclient10 дек. 2019 г.

  • CVE-2016-7404
    40В плане

    OpenStack Magnum passes OpenStack credentials into the Heat templates creating its instances.

    КритическаяCVSS 9,8Эксплойта нетEPSS 2 %

    openstack · magnum21 июн. 2019 г.

  • CVE-2024-28718
    39Наблюдать

    An issue in OpenStack magnum yoga-eom version allows a remote attacker to execute arbitrary code via the cert_manager.py.

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    openstack · magnum12 апр. 2024 г.

  • CVE-2026-31072
    39Наблюдать

    The JSONSerializer and CBORSerializer in APScheduler (all versions including 3.10.x and 4.0.0a5) are vulnerable to Remote Code Execution (RC

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    19 мая 2026 г.

  • CVE-2026-41283
    39Наблюдать

    OpenStack Mistral through 22.0.0 allows Arbitrary Remote Code Execution when the API is exposed.

    КритическаяCVSS 9,9Эксплойта нетEPSS 1 %

    openstack · mistral4 июн. 2026 г.

  • CVE-2026-22797
    39Наблюдать

    An issue was discovered in OpenStack keystonemiddleware 10.5 through 10.7 before 10.7.2, 10.8 and 10.9 before 10.9.1, and 10.10 through 10.1

    КритическаяCVSS 9,9Эксплойта нетEPSS 1 %

    openstack · keystonemiddleware19 янв. 2026 г.

  • CVE-2015-8914
    37Наблюдать

    The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended ICMPv6-spoofin

    КритическаяCVSS 9,1Эксплойта нетEPSS 4 %

    openstack · neutron17 июн. 2016 г.

  • CVE-2014-0187
    37Наблюдать

    The openvswitch-agent process in OpenStack Neutron 2013.1 before 2013.2.4 and 2014.1 before 2014.1.1 allows remote authenticated users to by

    КритическаяCVSS 9,0Эксплойта нетEPSS 3 %

    openstack · neutron28 апр. 2014 г.

  • CVE-2019-15753
    37Наблюдать

    In OpenStack os-vif 1.15.x before 1.15.2, and 1.16.0, a hard-coded MAC aging time of 0 disables MAC learning in linuxbridge, forcing obligat

    КритическаяCVSS 9,1Эксплойта нетEPSS 3 %

    openstack · os-vif28 авг. 2019 г.

  • CVE-2019-10141
    37Наблюдать

    A vulnerability was found in openstack-ironic-inspector all versions excluding 5.0.2, 6.0.3, 7.2.4, 8.0.3 and 8.2.1.

    КритическаяCVSS 9,1Эксплойта нетEPSS 2 %

    openstack · ironic-inspector30 июл. 2019 г.

  • CVE-2020-12691
    36Наблюдать

    An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 5 %

    openstack · keystone6 мая 2020 г.

  • CVE-2020-12690
    36Наблюдать

    An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    openstack · keystone6 мая 2020 г.

  • CVE-2019-19687
    36Наблюдать

    OpenStack Keystone 15.0.0 and 16.0.0 is affected by Data Leakage in the list credentials API.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    openstack · keystone9 дек. 2019 г.

  • CVE-2021-38598
    36Наблюдать

    OpenStack Neutron before 16.4.1, 17.x before 17.1.3, and 18.0.0 allows hardware address impersonation when the linuxbridge driver with ebtab

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    openstack · neutron23 авг. 2021 г.

  • CVE-2026-28370
    36Наблюдать

    In the query parser in OpenStack Vitrage before 12.0.1, 13.0.0, 14.0.0, and 15.0.0, a user allowed to access the Vitrage API may trigger cod

    КритическаяCVSS 9,1Эксплойта нетEPSS 1 %

    openstack · vitrage27 февр. 2026 г.

  • CVE-2017-17051
    35Наблюдать

    An issue was discovered in the default FilterScheduler in OpenStack Nova 16.0.3.

    ВысокаяCVSS 8,6Эксплойта нетEPSS 2 %

    openstack · nova5 дек. 2017 г.

  • CVE-2020-12689
    35Наблюдать

    An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %

    openstack · keystone6 мая 2020 г.

  • CVE-2018-10898
    35Наблюдать

    A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    openstack · tripleo heat templates30 июл. 2018 г.