ZeroHour

CVE-2016-4474

CVSS 3.0
8.8 high
EPSS
<1%p56
Published
()
Modified
Description

The image build process for the overcloud images in Red Hat OpenStack Platform 8.0 (Liberty) director and Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) director (aka overcloud-full) use a default root password of ROOTPW, which allows attackers to gain access via unspecified vectors.

Vendors
redhat
Products
openstack
Weakness
CWE-200, CWE-254
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.