Vulnerabilities > Redhat > Openstack Folsom

DATE CVE VULNERABILITY TITLE RISK
2013-04-10 CVE-2013-1815 Credentials Management vulnerability in Redhat Openstack Essex, Openstack Folsom and Packstack
PackStack 2012.2.3 in Red Hat OpenStack Essex and Folsom can create the answer file in insecure directories such as /tmp or the current working directory, which allows local users to modify deployed systems by changing this file.
local
redhat CWE-255
4.4
2013-04-10 CVE-2012-6120 Permissions, Privileges, and Access Controls vulnerability in Redhat Openstack Essex and Openstack Folsom
Red Hat OpenStack Essex and Folsom creates the /var/log/puppet directory with world-readable permissions, which allows local users to obtain sensitive information such as Puppet log files.
local
low complexity
redhat CWE-264
2.1