CVE-2016-7404 Vulnerability Details

  /     /     /  

CVE-2016-7404 Metadata Quick Info

CVE Published: 21/06/2019 | CVE Updated: 06/08/2024 | CVE Year: 2016
Source: mitre | Vendor: n/a | Product: n/a
Status : PUBLISHED

CVE-2016-7404 Description

OpenStack Magnum passes OpenStack credentials into the Heat templates creating its instances. While these should just be used for retrieving the instances\' SSL certificates, they allow full API access, though and can be used to perform any API operation the user is authorized to perform.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: n/a
Source: n/a

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).