CVE-2016-6829

Severity CVSS v4.0:
Pending analysis
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
09/12/2016
Last modified:
12/04/2025

Description

The trove service user in (1) Openstack deployment (aka crowbar-openstack) and (2) Trove Barclamp (aka barclamp-trove and crowbar-barclamp-trove) in the Crowbar Framework has a default password, which makes it easier for remote attackers to obtain access via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:barclamp-trove_project:barclamp-trove:-:*:*:*:*:*:*:*
cpe:2.3:a:crowbar-openstack_project:crowbar-openstack:-:*:*:*:*:*:*:*