CVE-2013-1815

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
10/04/2013
Last modified:
11/04/2025

Description

PackStack 2012.2.3 in Red Hat OpenStack Essex and Folsom can create the answer file in insecure directories such as /tmp or the current working directory, which allows local users to modify deployed systems by changing this file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redhat:openstack_essex:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openstack_folsom:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:packstack:2012.2.3:*:*:*:*:*:*:*