CVE-2021-4180Medium· 4.3▾ SunlitExposure of Sensitive Information to an Unauthorized Actor in OpenStack tripleo-heat-templates
▾ Sunlit zone — Low / medium · no exploitation signal
impact 23.7 · likelihood 0.2 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 8.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
0.8%
0.8% → 0.8%
An information exposure flaw in openstack-tripleo-heat-templates allows an external user to discover the internal IP or hostname. An attacker could exploit this by checking the www_authenticate_uri parameter (which is visible to all end users) in configuration files. This would give sensitive information which may aid in additional system exploitation. A patch is available on the master branch and anticipated to be part of version 11.6.1.
tripleo-heat-templates < 11.6.1Upgrade to a patched release:
tripleo-heat-templates 11.6.1Connected by shared product, vendor, weakness, or advisory.