CVE-2015-9543Low· 3.3▾ SunlitOpenStack Nova can leak consoleauth token into log files
▾ Sunlit zone — Low / medium · no exploitation signal
impact 18.2 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 8.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
0.4%
0.4% → 0.4%
An issue was discovered in OpenStack Nova before 18.2.4, 19.x before 19.1.0, and 20.x before 20.1.0. It can leak consoleauth tokens into log files. An attacker with read access to the service's logs may obtain tokens used for console access. All Nova setups using novncproxy are affected. This is related to NovaProxyRequestHandlerBase.new_websocket_client in console/websocketproxy.py.
nova < 18.2.4nova >= 19.0.0, < 19.1.0nova >= 20.0.0, < 20.1.0Upgrade to a patched release:
nova 18.2.4nova 19.1.0nova 20.1.0Connected by shared product, vendor, weakness, or advisory.
CVE-2014-3517MediumOpenStack Compute (Nova) Exposure of Sensitive Information to an Unauthorized Actor vulnerability
CVE-2015-0259MediumOpenStack Compute (Nova) has Insufficient Verification of Data Authenticity
CVE-2017-16239Medium· 6.5OpenStack Nova Filter Scheduler Bypass
CVE-2021-3654Medium· 6.1Open Redirect in CPython that affects users of OpenStack Nova
CVE-2017-17051High· 8.6OpenStack Nova DoS by rebuilding the same instance with a new image multiple times
CVE-2011-4076Medium· 5.9OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor