CVE-2020-9225

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
18/06/2020
Last modified:
22/06/2020

Description

FusionSphere OpenStack 6.5.1 have an improper permissions management vulnerability. The software does not correctly perform a privilege assignment when an actor attempts to perform an action. Successful exploit could allow certain user to do certain operations beyond its privilege.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:huawei:fusionsphere_openstack:6.5.1:*:*:*:*:*:*:*