Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Libcloud 0.12.3 through 0.13.2 does not set the scrub_data parameter for the destroy DigitalOcean API, which allows local users to obtain sensitive information by leveraging a new VM.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Libcloud Digital Ocean API 本地信息泄露漏洞
Vulnerability Description
Apache Libcloud是美国阿帕奇(Apache)软件基金会的一个为各个云供应商的专有API提供了能够访问云计算服务的通用接口的Python库。 Apache Libcloud 012.3至0.13.2版本中存在安全漏洞,该漏洞源于当程序删除DigitalOcean API接口时没有发送‘scrub_data’查询参数。本地攻击者可通过新的虚拟机(VM)利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A