CVE-2015-5293

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
24/08/2017
Last modified:
20/04/2025

Description

Red Hat Enterprise Virtualization Manager 3.6 and earlier gives valid SLAAC IPv6 addresses to interfaces when "boot protocol" is set to None, which might allow remote attackers to communicate with a system designated to be unreachable.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redhat:enterprise_virtualization_manager:*:*:*:*:*:*:*:* 3.6.0 (including)