5
CVSSv2

CVE-2015-5303

Published: 11/04/2016 Updated: 18/04/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The TripleO Heat templates (tripleo-heat-templates), when deployed via the commandline interface, allow remote malicious users to spoof OpenStack Networking metadata requests by leveraging knowledge of the default value of the NeutronMetadataProxySharedSecret parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

openstack tripleo heat templates

Vendor Advisories

Synopsis Moderate: Red Hat Enterprise Linux OpenStack Platform 7 director update Type/Severity Security Advisory: Moderate Topic Updated packages that fix two security issues and multiple bugs are nowavailable for Red Hat Enterprise Linux OpenStack Platform 70 directorfor Red Hat Enterprise Linux 7Red Hat ...