Tagged “osv”
CVEs tagged osv, newest first.
5750 CVEsRSS
CVE-2010-2235HighCobbler is vulnerable to code injection
Cobbler is vulnerable to code injection
CVE-2013-4179MediumOpenStack Compute (Nova) vulnerable to denial of service via XML Entity Expansion attack
OpenStack Compute (Nova) vulnerable to denial of service via XML Entity Expansion attack
CVE-2017-7266Medium· 6.1Netflix Security Monkey Open Redirect vulnerability
Netflix Security Monkey Open Redirect vulnerability
CVE-2014-9623MediumOpenStack Glance Bypass the storage quota and Denial of service
OpenStack Glance Bypass the storage quota and Denial of service
CVE-2011-4953MediumCobbler vulnerable to code injection via unsafe YAML loading
Cobbler vulnerable to code injection via unsafe YAML loading
CVE-2015-5240LowOpenStack Neutron Race condition vulnerability
OpenStack Neutron Race condition vulnerability
CVE-2015-5286MediumOpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
OpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
CVE-2016-4808Medium· 4.5PoCWeb2py Cross-Site Request Forgery vulnerability
Web2py Cross-Site Request Forgery vulnerability
CVE-2014-7960MediumOpenStack Swift metadata constraints are not correctly enforced
OpenStack Swift metadata constraints are not correctly enforced
CVE-2012-2395HighCobbler subject to Command Injection
Cobbler subject to Command Injection
CVE-2016-0738High· 7.5OpenStack Object Storage (Swift) allows remote attackers to cause a denial of service
OpenStack Object Storage (Swift) allows remote attackers to cause a denial of service
CVE-2013-4477LowOpenStack Identity Keystone Privilege Escalation vulnerability
OpenStack Identity Keystone Privilege Escalation vulnerability
CVE-2011-1340MediumPlone XSS Vulnerability
Plone XSS Vulnerability
CVE-2016-5363High· 8.2OpenStack Neutron Intended MAC-spoofing protection mechanism bypass
OpenStack Neutron Intended MAC-spoofing protection mechanism bypass
CVE-2015-1851MediumOpenStack Cinder file disclosure in image convert
OpenStack Cinder file disclosure in image convert
CVE-2015-3156Medium· 5.5Openstack DBaaS (Trove) Improper Link Resolution Before File Access
Openstack DBaaS (Trove) Improper Link Resolution Before File Access
CVE-2016-0737High· 7.5OpenStack Object Storage (Swift) allows remote attackers to cause a denial of service
OpenStack Object Storage (Swift) allows remote attackers to cause a denial of service
CVE-2011-3587HighPoCZope Command Execution Vulnerability
Zope Command Execution Vulnerability
CVE-2014-0056MediumOpenStack Neutron Improper Authentication vulnerability
OpenStack Neutron Improper Authentication vulnerability
CVE-2013-2209Medium· 6.1Review Board Cross-site scripting (XSS) vulnerability in the reviews dropdown
Review Board Cross-site scripting (XSS) vulnerability in the reviews dropdown
CVE-2014-3497MediumOpenStack Swift Cross-site Scriping vulnerability
OpenStack Swift Cross-site Scriping vulnerability
CVE-2016-0757Medium· 4.3OpenStack Image Service (Glance) vulnerable to Improper Access Control
OpenStack Image Service (Glance) vulnerable to Improper Access Control
CVE-2010-4338Mediumocrodjvu is vulnerable to Arbitrary File Modification via symlink attack
ocrodjvu is vulnerable to Arbitrary File Modification via symlink attack
CVE-2013-4463LowOpenStack Nova denial of service through compressed disk images
OpenStack Nova denial of service through compressed disk images
CVE-2014-3242MediumSOAPpy vulnerable to XML External Entity attacks
SOAPpy vulnerable to XML External Entity attacks
CVE-2014-5356MediumOpenStack Glance improper validation of the image_size_cap configuration option
OpenStack Glance improper validation of the image_size_cap configuration option
CVE-2013-4278LowOpenStack Compute (Nova) Resource limit circumvention in Nova private flavors
OpenStack Compute (Nova) Resource limit circumvention in Nova private flavors
CVE-2013-4469LowOpenStack Compute (Nova) Denial of service due to improper validation of virtual size of QCOW2 image
OpenStack Compute (Nova) Denial of service due to improper validation of virtual size of QCOW2 image
CVE-2014-3243MediumSOAPpy vulnerable to XXE attacks
SOAPpy vulnerable to XXE attacks
CVE-2013-4497MediumOpenStack Compute Nova Improper Access Control
OpenStack Compute Nova Improper Access Control