İçeriğe atla
Noroxi

openstack kayıtları

openstack üreticisine ait 292 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
7
Düzeltme kaydı olan
%94,2
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

292 kayıt
  • CVE-2017-18017
    55Planlayın

    The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attac

    KritikCVSS 9,8İstismar yokEPSS %53

    linux · linux kernel3 Oca 2018

  • CVE-2017-16613
    42Planlayın

    An issue was discovered in middleware.py in OpenStack Swauth through 1.2.0 when used with OpenStack Swift through 2.15.1.

    KritikCVSS 9,8İstismar yokEPSS %8

    openstack · swauth21 Kas 2017

  • CVE-2012-4406
    41Planlayın

    OpenStack Object Storage (swift) before 1.7.0 uses the loads function in the pickle Python module unsafely when storing and loading metadata

    KritikCVSS 9,8İstismar yokEPSS %7

    openstack · swift22 Eki 2012

  • CVE-2020-26943
    40Planlayın

    An issue was discovered in OpenStack blazar-dashboard before 1.3.1, 2.0.0, and 3.0.0.

    KritikCVSS 9,9İstismar yokEPSS %3

    openstack · blazar-dashboard16 Eki 2020

  • CVE-2016-4972
    40Planlayın

    OpenStack Murano before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka), Murano-dashboard before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka)

    KritikCVSS 9,8İstismar yokEPSS %3

    openstack · mitaka-murano26 Eyl 2016

  • CVE-2017-7214
    40Planlayın

    An issue was discovered in exception_wrapper.py in OpenStack Nova 13.x through 13.1.3, 14.x through 14.0.4, and 15.x through 15.0.1.

    KritikCVSS 9,8İstismar yokEPSS %2

    openstack · nova21 Mar 2017

  • CVE-2013-2166
    40Planlayın

    python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache encryption bypass

    KritikCVSS 9,8İstismar yokEPSS %2

    openstack · python-keystoneclient10 Ara 2019

  • CVE-2013-2167
    40Planlayın

    python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache signing bypass

    KritikCVSS 9,8İstismar yokEPSS %2

    openstack · python-keystoneclient10 Ara 2019

  • CVE-2016-7404
    40Planlayın

    OpenStack Magnum passes OpenStack credentials into the Heat templates creating its instances.

    KritikCVSS 9,8İstismar yokEPSS %2

    openstack · magnum21 Haz 2019

  • CVE-2024-28718
    39İzleyin

    An issue in OpenStack magnum yoga-eom version allows a remote attacker to execute arbitrary code via the cert_manager.py.

    KritikCVSS 9,8İstismar yokEPSS %1

    openstack · magnum12 Nis 2024

  • CVE-2026-31072
    39İzleyin

    The JSONSerializer and CBORSerializer in APScheduler (all versions including 3.10.x and 4.0.0a5) are vulnerable to Remote Code Execution (RC

    KritikCVSS 9,8İstismar yokEPSS %1

    19 May 2026

  • CVE-2026-41283
    39İzleyin

    OpenStack Mistral through 22.0.0 allows Arbitrary Remote Code Execution when the API is exposed.

    KritikCVSS 9,9İstismar yokEPSS %1

    openstack · mistral4 Haz 2026

  • CVE-2026-22797
    39İzleyin

    An issue was discovered in OpenStack keystonemiddleware 10.5 through 10.7 before 10.7.2, 10.8 and 10.9 before 10.9.1, and 10.10 through 10.1

    KritikCVSS 9,9İstismar yokEPSS %1

    openstack · keystonemiddleware19 Oca 2026

  • CVE-2015-8914
    37İzleyin

    The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended ICMPv6-spoofin

    KritikCVSS 9,1İstismar yokEPSS %4

    openstack · neutron17 Haz 2016

  • CVE-2014-0187
    37İzleyin

    The openvswitch-agent process in OpenStack Neutron 2013.1 before 2013.2.4 and 2014.1 before 2014.1.1 allows remote authenticated users to by

    KritikCVSS 9,0İstismar yokEPSS %3

    openstack · neutron28 Nis 2014

  • CVE-2019-15753
    37İzleyin

    In OpenStack os-vif 1.15.x before 1.15.2, and 1.16.0, a hard-coded MAC aging time of 0 disables MAC learning in linuxbridge, forcing obligat

    KritikCVSS 9,1İstismar yokEPSS %3

    openstack · os-vif28 Ağu 2019

  • CVE-2019-10141
    37İzleyin

    A vulnerability was found in openstack-ironic-inspector all versions excluding 5.0.2, 6.0.3, 7.2.4, 8.0.3 and 8.2.1.

    KritikCVSS 9,1İstismar yokEPSS %2

    openstack · ironic-inspector30 Tem 2019

  • CVE-2020-12691
    36İzleyin

    An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0.

    YüksekCVSS 8,8İstismar yokEPSS %5

    openstack · keystone6 May 2020

  • CVE-2020-12690
    36İzleyin

    An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0.

    YüksekCVSS 8,8İstismar yokEPSS %2

    openstack · keystone6 May 2020

  • CVE-2019-19687
    36İzleyin

    OpenStack Keystone 15.0.0 and 16.0.0 is affected by Data Leakage in the list credentials API.

    YüksekCVSS 8,8İstismar yokEPSS %2

    openstack · keystone9 Ara 2019

  • CVE-2021-38598
    36İzleyin

    OpenStack Neutron before 16.4.1, 17.x before 17.1.3, and 18.0.0 allows hardware address impersonation when the linuxbridge driver with ebtab

    KritikCVSS 9,1İstismar yokEPSS %1

    openstack · neutron23 Ağu 2021

  • CVE-2026-28370
    36İzleyin

    In the query parser in OpenStack Vitrage before 12.0.1, 13.0.0, 14.0.0, and 15.0.0, a user allowed to access the Vitrage API may trigger cod

    KritikCVSS 9,1İstismar yokEPSS %1

    openstack · vitrage27 Şub 2026

  • CVE-2017-17051
    35İzleyin

    An issue was discovered in the default FilterScheduler in OpenStack Nova 16.0.3.

    YüksekCVSS 8,6İstismar yokEPSS %2

    openstack · nova5 Ara 2017

  • CVE-2020-12689
    35İzleyin

    An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0.

    YüksekCVSS 8,8İstismar yokEPSS %2

    openstack · keystone6 May 2020

  • CVE-2018-10898
    35İzleyin

    A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40.

    YüksekCVSS 8,8İstismar yokEPSS %1

    openstack · tripleo heat templates30 Tem 2018