Vulnerabilities > Openstack > Keystone > 2013.1

DATE CVE VULNERABILITY TITLE RISK
2016-02-03 CVE-2015-7546 Insufficiently Protected Credentials vulnerability in multiple products
The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty before 2.3.3 does not properly invalidate authorization tokens when using the PKI or PKIZ token providers, which allows remote authenticated users to bypass intended access restrictions and gain access to cloud resources by manipulating byte fields within a revoked token.
6.0
2015-05-12 CVE-2015-3646 Information Exposure vulnerability in multiple products
OpenStack Identity (Keystone) before 2014.1.5 and 2014.2.x before 2014.2.4 logs the backend_argument configuration option content, which allows remote authenticated users to obtain passwords and other sensitive backend information by reading the Keystone logs.
network
low complexity
oracle openstack CWE-200
4.0
2014-11-03 CVE-2014-0204 Improper Privilege Management vulnerability in Openstack Keystone 2014.1
OpenStack Identity (Keystone) before 2014.1.1 does not properly handle when a role is assigned to a group that has the same ID as a user, which allows remote authenticated users to gain privileges that are assigned to a group with the same ID.
network
low complexity
openstack CWE-269
6.5
2014-06-17 CVE-2014-3476 Improper Privilege Management vulnerability in multiple products
OpenStack Identity (Keystone) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 does not properly handle chained delegation, which allows remote authenticated users to gain privileges by leveraging a (1) trust or (2) OAuth token with impersonation enabled to create a new token with additional roles.
6.0
2014-04-15 CVE-2014-2828 Improper Authentication vulnerability in Openstack Keystone
The V3 API in OpenStack Identity (Keystone) 2013.1 before 2013.2.4 and icehouse before icehouse-rc2 allows remote attackers to cause a denial of service (CPU consumption) via a large number of the same authentication method in a request, aka "authentication chaining."
network
low complexity
openstack CWE-287
7.8
2014-04-01 CVE-2014-2237 Permissions, Privileges, and Access Controls vulnerability in Openstack Keystone
The memcache token backend in OpenStack Identity (Keystone) 2013.1 through 2.013.1.4, 2013.2 through 2013.2.2, and icehouse before icehouse-3, when issuing a trust token with impersonation enabled, does not include this token in the trustee's token-index-list, which prevents the token from being invalidated by bulk token revocation and allows the trustee to bypass intended access restrictions.
network
low complexity
openstack CWE-264
5.0
2013-12-14 CVE-2013-6391 Improper Privilege Management vulnerability in multiple products
The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehouse-2 does not return a trust-scoped token when one is received, which allows remote trust users to gain privileges by generating EC2 credentials from a trust-scoped token and using them in an ec2tokens API request.
5.8
2013-08-20 CVE-2013-2157 Improper Authentication vulnerability in Openstack Keystone
OpenStack Keystone Folsom, Grizzly before 2013.1.3, and Havana, when using LDAP with Anonymous binding, allows remote attackers to bypass authentication via an empty password.
network
openstack CWE-287
4.3
2013-05-21 CVE-2013-2059 Improper Authentication vulnerability in Openstack Keystone 2012.1/2013.1
OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and Havana does not immediately revoke the authentication token when deleting a user through the Keystone v2 API, which allows remote authenticated users to retain access via the token.
network
openstack CWE-287
6.0
2013-04-12 CVE-2013-0282 Improper Authentication vulnerability in Openstack Keystone
OpenStack Keystone Grizzly before 2013.1, Folsom 2012.1.3 and earlier, and Essex does not properly check if the (1) user, (2) tenant, or (3) domain is enabled when using EC2-style authentication, which allows context-dependent attackers to bypass access restrictions.
network
low complexity
openstack CWE-287
5.0