Eucalyptus

Eucalyptus

22 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.5%
  • Veröffentlicht 10.10.2013 00:55:15
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown impact and attack vectors.

  • EPSS 0.25%
  • Veröffentlicht 17.09.2013 12:04:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The gather log service in Eucalyptus before 3.3.1 allows remote attackers to read log files via an unspecified request to the (1) Cluster Controller (CC) or (2) Node Controller (NC) component.

  • EPSS 0.13%
  • Veröffentlicht 17.09.2013 12:04:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Walrus in Eucalyptus before 3.2.2 does not verify authorization for the GetBucketLoggingStatus, SetBucketLoggingStatus, and SetBucketVersioningStatus bucket operations, which allows remote authenticated users to bypass intended restrictions on (1) mo...

  • EPSS 0.39%
  • Veröffentlicht 17.09.2013 12:04:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Walrus in Eucalyptus before 3.2.2 allows remote attackers to cause a denial of service (memory, thread, and CPU consumption) via a crafted XML message containing a DTD, as demonstrated by a bucket-logging request.

  • EPSS 0.2%
  • Veröffentlicht 08.03.2013 18:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request headers, which allows attackers to (1) delete or (2) upload snapshots.

  • EPSS 0.14%
  • Veröffentlicht 01.10.2012 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote authenticated users to bypass unspecified authorization checks and obtain direct access to a (1) Cloud Controller or (2) Walrus...

  • EPSS 0.36%
  • Veröffentlicht 01.10.2012 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote authenticated users to gain privileges by sending a message to (1) Cloud Controller or (2) Walrus with the internal message for...

  • EPSS 0.47%
  • Veröffentlicht 01.10.2012 23:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Apache Santuario configuration in Eucalyptus before 3.1.1 does not properly restrict applying XML Signature transforms to documents, which allows remote attackers to cause a denial of service via unspecified vectors.

  • EPSS 0.52%
  • Veröffentlicht 17.07.2012 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The VMware Broker in Eucalyptus 2.0.3 and 3.0.x before 3.0.2 does not properly authenticate SOAP requests, which allows remote attackers to execute arbitrary VMware Broker API commands.

  • EPSS 0.52%
  • Veröffentlicht 17.07.2012 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Walrus service in Eucalyptus 2.0.3 and 3.0.x before 3.0.2 allows remote attackers to gain administrator privileges via a crafted REST request.