7.5
CVSSv3

CVE-2017-1000406

Published: 30/11/2017 Updated: 20/12/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

OpenDaylight Karaf 0.6.1-Carbon fails to clear the cache after a password change, allowing the old password to be used until the Karaf cache is manually cleared (e.g. via restart).

Vulnerable Product Search on Vulmon Subscribe to Product

opendaylight karaf 0.6.1-carbon

Vendor Advisories

OpenDaylight Karaf 061-Carbon fails to clear the cache after a password change allowing the old password to be used until the Karaf cache is manually cleared (eg via restart) ...