TROYANOSYVIRUS
Voltar para CVEs

CVE-2014-9493

N/A

Descricao

The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.2.2 and 2014.1.4 allows remote authenticated users to read or delete arbitrary files via a full pathname in a file: URL in the image location property.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado1/7/2015
Ultima modificacao4/12/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

openstack:image_registry_and_delivery_service_\(glance\)redhat:openstack

Fraquezas (CWE)

CWE-264

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.