ZeroHour

CVE-2017-2720

CVSS 3.0
5.3 medium
EPSS
<1%p51
Published
()
Modified
Description

FusionSphere OpenStack V100R006C00 has an information exposure vulnerability. The software uses hard-coded cryptographic key to encrypt messages between certain components, which significantly increases the possibility that encrypted data may be recovered and results in information exposure.

Vendors
huawei
Products
fusionsphere openstack
Weakness
CWE-798
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.