CVE-2013-7048
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
23/01/2014
Last modified:
11/04/2025
Description
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
Impact
Base Score 2.0
3.30
Severity 2.0
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:openstack:nova:*:*:*:*:*:*:*:* | 2013.1 (including) | 2013.1.4 (including) |
cpe:2.3:a:openstack:nova:*:*:*:*:*:*:*:* | 2013.2 (including) | 2013.2.1 (including) |
To consult the complete list of CPE names with products and versions, see this page