TROYANOSYVIRUS
Volver a CVEs

CVE-2014-9493

N/A

Descripcion

The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.2.2 and 2014.1.4 allows remote authenticated users to read or delete arbitrary files via a full pathname in a file: URL in the image location property.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado1/7/2015
Ultima modificacion4/12/2025
Fuentenvd
Avistamientos honeypot0

Productos afectados

openstack:image_registry_and_delivery_service_\(glance\)redhat:openstack

Debilidades (CWE)

CWE-264

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.