2.8

CVE-2013-6398

The virtual router in Apache CloudStack before 4.2.1 does not preserve the source restrictions in firewall rules after being restarted, which allows remote attackers to bypass intended restrictions via a request.

Data is provided by the National Vulnerability Database (NVD)
ApacheCloudstack Version <= 4.2.0
ApacheCloudstack Version2.0 Update- Editioncommunity
ApacheCloudstack Version2.0.1
ApacheCloudstack Version2.1.0
ApacheCloudstack Version2.1.1
ApacheCloudstack Version2.1.2
ApacheCloudstack Version2.1.3
ApacheCloudstack Version2.1.4
ApacheCloudstack Version2.1.5
ApacheCloudstack Version2.1.6
ApacheCloudstack Version2.1.7
ApacheCloudstack Version2.1.8
ApacheCloudstack Version2.1.9
ApacheCloudstack Version2.1.10
ApacheCloudstack Version2.2.0
ApacheCloudstack Version2.2.1
ApacheCloudstack Version2.2.2
ApacheCloudstack Version2.2.3
ApacheCloudstack Version2.2.5
ApacheCloudstack Version2.2.6
ApacheCloudstack Version2.2.7
ApacheCloudstack Version2.2.8
ApacheCloudstack Version2.2.9
ApacheCloudstack Version2.2.11
ApacheCloudstack Version2.2.12
ApacheCloudstack Version2.2.13
ApacheCloudstack Version2.2.14
ApacheCloudstack Version3.0.0
ApacheCloudstack Version3.0.1
ApacheCloudstack Version3.0.2
ApacheCloudstack Version4.0.0 Updateincubating
ApacheCloudstack Version4.0.1
ApacheCloudstack Version4.0.2
ApacheCloudstack Version4.1.0
ApacheCloudstack Version4.1.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.99% 0.748
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.8 5.5 2.9
AV:N/AC:M/Au:M/C:P/I:N/A:N