CVE-2018-10898

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
30/07/2018
Last modified:
04/08/2021

Description

A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redhat:openstack:13:*:*:*:*:*:*:*
cpe:2.3:a:openstack:tripleo_heat_templates:*:*:*:*:*:*:*:* 8.0.2-40 (excluding)