Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
CRITICAL 9.6
CVE-2014-5039
Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.2 allows remote attackers to inject arbitrary web sc…
Eucalyptus Management Console
4.0.2+
MEDIUM 6.1
CVE-2013-4770
Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attackers to inject arbitrary web sc…
Eucalyptus Management Console
4.0.1+
HIGH 8.8
CVE-2016-8528
A Remote Escalation of Privilege vulnerability in HPE Helion Eucalyptus version 3.3.0 through 4.3.1 was found.
Eucalyptus
after 4.3.1
HIGH 8.8
CVE-2016-8520
HPE Helion Eucalyptus v4.3.0 and earlier does not correctly check IAM user's permissions for accessing versioned objects and ACLs. In some cases, aut…
Eucalyptus
after 4.3.0
MEDIUM 6.5
CVE-2017-7999
Atlassian Eucalyptus before 4.4.1, when in EDGE mode, allows remote authenticated users with certain privileges to cause a denial of service (E2 serv…
Eucalyptus
No fix yet
HIGH 7.5
CVE-2015-6861
HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission requirement and assume an IAM…
Eucalyptus
Mitigation only
MEDIUM 6.8
CVE-2014-5040
HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2.x before 4.2.1 allow remote authenticated users to bypass intended access restr…
Eucalyptus
Mitigation only
MEDIUM 5.0
CVE-2013-4768
The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote attackers to cause a denial of service via vectors related to the "network connect…
Eucalyptus
Mitigation only
HIGH 10.0
CVE-2013-4767
Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown impact and attack vectors.
Eucalyptus
after 3.3.1
MEDIUM 6.9
CVE-2013-2297
Eucalyptus EuStore sets a blank root password in the default configuration of EMI 3868652036, EMI 0400376721, EMI 2425352071, and EMI 1347115203, whi…
Eustore
Mitigation only
MEDIUM 5.5
CVE-2013-2296
Walrus in Eucalyptus before 3.2.2 does not verify authorization for the GetBucketLoggingStatus, SetBucketLoggingStatus, and SetBucketVersioningStatus…
Eucalyptus
after 3.2.1
MEDIUM 5.0
CVE-2012-4066
The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request headers, which allows at…
Eucalyptus
after 3.2.0
MEDIUM 6.5
CVE-2012-4064
Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote authenticated users to gai…
Eucalyptus
after 3.1.0
MEDIUM 5.0
CVE-2012-4063
The Apache Santuario configuration in Eucalyptus before 3.1.1 does not properly restrict applying XML Signature transforms to documents, which allows…
Eucalyptus
after 3.1.0
HIGH 7.5
CVE-2012-3240
The Walrus service in Eucalyptus 2.0.3 and 3.0.x before 3.0.2 allows remote attackers to gain administrator privileges via a crafted REST request.
Eucalyptus
Mitigation only
HIGH 7.5
CVE-2012-3241
The VMware Broker in Eucalyptus 2.0.3 and 3.0.x before 3.0.2 does not properly authenticate SOAP requests, which allows remote attackers to execute a…
Eucalyptus
Mitigation only
HIGH 7.5
CVE-2010-3905
The password reset feature in the administrator interface for Eucalyptus 2.0.0 and 2.0.1 does not perform authentication, which allows remote attacke…
Eucalyptus
Mitigation only