Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The v1 API in OpenStack Glance Essex (2012.1), Folsom (2012.2), and Grizzly, when using the single-tenant Swift or S3 store, reports the location field, which allows remote authenticated users to obtain the operator's backend credentials via a request for a cached image.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OpenStack Glance 信息泄露漏洞
Vulnerability Description
OpenStack是美国国家航空航天局(National Aeronautics and Space Administration)和美国Rackspace公司合作研发的一个云平台管理项目。Glance是其中的一个可存储、查询和检索虚拟机镜像的项目。 OpenStack Glance Essex (2012.1),Folsom (2012.2),Grizzly中的v1 API中存在漏洞,该漏洞源于使用单一租户Swift或S3存储时,报告位置字段。通过对缓存图像的请求,远程认证攻击者利用该漏洞获得操作者的后
CVSS Information
N/A
Vulnerability Type
N/A