İçeriğe atla
Noroxi

ceph kayıtları

ceph üreticisine ait 11 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%100
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

11 kayıt
  • CVE-2020-1716
    35İzleyin

    A flaw was found in the ceph-ansible playbook where it contained hardcoded passwords that were being used as default passwords while deployi

    YüksekCVSS 8,8İstismar yokEPSS %1

    ceph · ceph-ansible28 May 2021

  • CVE-2018-10861
    33İzleyin

    A flaw was found in the way ceph mon handles user requests.

    YüksekCVSS 8,1İstismar yokEPSS %3

    ceph · ceph10 Tem 2018

  • CVE-2019-10222
    31İzleyin

    A flaw was found in the Ceph RGW configuration with Beast as the front end handling client requests.

    YüksekCVSS 7,5İstismar yokEPSS %4

    ceph · ceph8 Kas 2019

  • CVE-2019-3821
    31İzleyin

    A flaw was found in the way civetweb frontend was handling requests for ceph RGW server with SSL enabled.

    YüksekCVSS 7,5İstismar yokEPSS %3

    ceph · civetweb27 Mar 2019

  • CVE-2020-1700
    27İzleyin

    A flaw was found in the way the Ceph RGW Beast front-end handles unexpected disconnects.

    OrtaCVSS 6,5İstismar yokEPSS %2

    ceph · ceph7 Şub 2020

  • CVE-2018-1129
    27İzleyin

    A flaw was found in the way signature calculation was handled by cephx authentication protocol.

    OrtaCVSS 6,5İstismar yokEPSS %2

    ceph · ceph10 Tem 2018

  • CVE-2017-12155
    25İzleyin

    A resource-permission flaw was found in the openstack-tripleo-heat-templates package where ceph.client.openstack.keyring is created as world

    OrtaCVSS 6,3İstismar yokEPSS %0

    ceph · ceph12 Ara 2017

  • CVE-2020-25677
    22İzleyin

    A flaw was found in Ceph-ansible v4.0.41 where it creates an /etc/ceph/iscsi-gateway.conf with insecure default permissions.

    OrtaCVSS 5,5İstismar yokEPSS %0

    ceph · ceph-ansible7 Ara 2020

  • CVE-2017-7519
    17İzleyin

    In Ceph, a format string flaw was found in the way libradosstriper parses input from user.

    OrtaCVSS 4,4İstismar yokEPSS %1

    ceph · ceph27 Tem 2018

  • CVE-2015-4053
    8İzleyin

    The admin command in ceph-deploy before 1.5.25 uses world-readable permissions for /etc/ceph/ceph.client.admin.keyring, which allows local u

    DüşükCVSS 2,1İstismar yokEPSS %0

    ceph · ceph-deploy8 Haz 2015

  • CVE-2015-3010
    8İzleyin

    ceph-deploy before 1.5.23 uses weak permissions (644) for ceph/ceph.client.admin.keyring, which allows local users to obtain sensitive infor

    DüşükCVSS 2,1İstismar yokEPSS %0

    ceph · ceph-deploy16 Haz 2015