Vulnerabilities > Barclamp Trove Project

DATE CVE VULNERABILITY TITLE RISK
2016-12-09 CVE-2016-6829 Use of Hard-coded Credentials vulnerability in multiple products
The trove service user in (1) Openstack deployment (aka crowbar-openstack) and (2) Trove Barclamp (aka barclamp-trove and crowbar-barclamp-trove) in the Crowbar Framework has a default password, which makes it easier for remote attackers to obtain access via unspecified vectors.
network
low complexity
barclamp-trove-project crowbar-openstack-project CWE-798
critical
9.8