CVE-2017-7200

Severity
5.8MEDIUM
EPSS
0.4%
top 40.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 21
Latest updateMay 17

Description

An SSRF issue was discovered in OpenStack Glance before Newton. The 'copy_from' feature in the Image Service API v1 allowed an attacker to perform masked network port scans. With v1, it is possible to create images with a URL such as 'http://localhost:22'. This could then allow an attacker to enumerate internal network details while appearing masked, since the scan would appear to originate from the Glance Image service.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages3 packages

NVDopenstack/glancemitaka
PyPIglance< 11.0.0a0
Debianglance< 2:13.0.0-1+3

🔴Vulnerability Details

4
GHSA
OpenStack Glance Server-Side Request Forgery (SSRF)2022-05-17
OSV
OpenStack Glance Server-Side Request Forgery (SSRF)2022-05-17
CVEList
CVE-2017-7200: An SSRF issue was discovered in OpenStack Glance before Newton2017-03-21
OSV
CVE-2017-7200: An SSRF issue was discovered in OpenStack Glance before Newton2017-03-21

💥Exploits & PoCs

1
Exploit-DB
EBBISLAND EBBSHAVE 6100-09-04-1441 - Remote Buffer Overflow2020-01-08

📋Vendor Advisories

2
Red Hat
openstack-glance: API v1 copy_from reveals network details2017-03-15
Debian
CVE-2017-7200: glance - An SSRF issue was discovered in OpenStack Glance before Newton. The 'copy_from' ...2017

💬Community

1
Bugzilla
CVE-2017-7200 openstack-glance: API v1 copy_from reveals network details2017-03-21
CVE-2017-7200 (MEDIUM CVSS 5.8) | An SSRF issue was discovered in Ope | cvebase.io