Vulnerabilities > Canonical > Metal AS A Service > High

DATE CVE VULNERABILITY TITLE RISK
2019-04-22 CVE-2014-1426 Improper Input Validation vulnerability in Canonical Metal AS a Service 1.9.0/1.9.1
A vulnerability in maasserver.api.get_file_by_name of Ubuntu MAAS allows unauthenticated network clients to download any file.
network
low complexity
canonical CWE-20
7.5