CVE-2022-47951Medium· 5.7▾ SunlitOpenStack Cinder, glance, and Nova vulnerable to Path Traversal
▾ Sunlit zone — Low / medium · no exploitation signal
impact 31.4 · likelihood 0.2 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Jul 8.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
1.0%
1.0% → 1.0%
An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that file's contents from the server, resulting in unauthorized access to potentially sensitive data.
cinder < 19.1.2cinder >= 20.0.0, < 20.0.2glance < 23.0.1glance >= 24.0.0, < 24.1.1nova < 24.1.2nova >= 25.0.0, < 25.0.2Upgrade to a patched release:
cinder 19.1.2cinder 20.0.2glance 23.0.1glance 24.1.1nova 24.1.2nova 25.0.2Connected by shared product, vendor, weakness, or advisory.
CVE-2020-10755Medium· 6.5Openstack cinder Improper handling of ScaleIO backend credentials
CVE-2024-32498Medium· 6.5OpenStack Cinder, Glance, and Nova vulnerable to arbitrary file access
CVE-2014-3641MediumOpenStack Cinder Exposure of Sensitive Information to an Unauthorized Actor vulnerability
CVE-2013-4202MediumOpenStack Cinder Denial of Service using XML entities
CVE-2015-5162High· 7.5OpenStack Cinder, Glance, and Nova contain Uncontrolled Resource Consumption
CVE-2015-1851MediumOpenStack Cinder file disclosure in image convert