cbcvebase.
CVE-2014-9593
published 2015-01-15

CVE-2014-9593: Apache CloudStack before 4.3.2 and 4.4.x before 4.4.2 allows remote attackers to obtain private keys via a listSslCerts API call.

PriorityP428medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
3.18%
86.6th percentile
Apache CloudStack before 4.3.2 and 4.4.x before 4.4.2 allows remote attackers to obtain private keys via a listSslCerts API call.

Affected

3 ranges
VendorProductVersion rangeFixed in
apachecloudstack<= 4.3.1
apachecloudstack
apachecloudstack
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.