CVE-2013-1793Missing Authentication for Critical Function in Openstack-db Program

Severity
7.5HIGHNVD
EPSS
0.3%
top 48.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 10
Latest updateMay 5

Description

openstack-utils openstack-db has insecure password creation

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

CVEListV5openstack-utils/openstack-db_programthrough 2013-02-28
NVDredhat/openstack2.1, 3.0, 4.0+2

🔴Vulnerability Details

2
GHSA
GHSA-f4hm-g3r7-g3cc: openstack-utils openstack-db has insecure password creation2022-05-05
CVEList
CVE-2013-1793: openstack-utils openstack-db has insecure password creation2019-12-10

📋Vendor Advisories

1
Red Hat
openstack-utils: openstack-db insecure password creation for services2015-07-23

💬Community

1
Bugzilla
CVE-2013-1793 openstack-utils: openstack-db insecure password creation for services2013-02-28
CVE-2013-1793 — Openstack-db Program vulnerability | cvebase