Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.6 CVE-2014-5039 Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.2 allows remote attackers to inject arbitrary web sc… Eucalyptus Management Console 4.0.2+ Fix from $2,3002020-01-31 MEDIUM 6.1 CVE-2013-4770 Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attackers to inject arbitrary web sc… Eucalyptus Management Console 4.0.1+ Fix from $1,6002020-01-27 HIGH 8.8 CVE-2016-8528 A Remote Escalation of Privilege vulnerability in HPE Helion Eucalyptus version 3.3.0 through 4.3.1 was found. Eucalyptus after 4.3.1 Fix from $1,9502018-02-15 HIGH 8.8 CVE-2016-8520 HPE Helion Eucalyptus v4.3.0 and earlier does not correctly check IAM user's permissions for accessing versioned objects and ACLs. In some cases, aut… Eucalyptus after 4.3.0 Fix from $1,9502018-02-15 MEDIUM 6.5 CVE-2017-7999 Atlassian Eucalyptus before 4.4.1, when in EDGE mode, allows remote authenticated users with certain privileges to cause a denial of service (E2 serv… Eucalyptus No fix yet Fix from $1,6002017-06-01 HIGH 7.5 CVE-2015-6861 HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission requirement and assume an IAM… Eucalyptus Mitigation only Fix from $1,9502016-01-05 MEDIUM 6.8 CVE-2014-5040 HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2.x before 4.2.1 allow remote authenticated users to bypass intended access restr… Eucalyptus Mitigation only Fix from $1,6002016-01-05 MEDIUM 5.0 CVE-2013-4768 The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote attackers to cause a denial of service via vectors related to the "network connect… Eucalyptus Mitigation only Fix from $1,6002014-04-16 HIGH 10.0 CVE-2013-4767 Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown impact and attack vectors. Eucalyptus after 3.3.1 Fix from $1,9502013-10-10 MEDIUM 6.9 CVE-2013-2297 Eucalyptus EuStore sets a blank root password in the default configuration of EMI 3868652036, EMI 0400376721, EMI 2425352071, and EMI 1347115203, whi… Eustore Mitigation only Fix from $1,6002013-09-17 MEDIUM 5.5 CVE-2013-2296 Walrus in Eucalyptus before 3.2.2 does not verify authorization for the GetBucketLoggingStatus, SetBucketLoggingStatus, and SetBucketVersioningStatus… Eucalyptus after 3.2.1 Fix from $1,6002013-09-17 MEDIUM 5.0 CVE-2012-4066 The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request headers, which allows at… Eucalyptus after 3.2.0 Fix from $1,6002013-03-08 MEDIUM 6.5 CVE-2012-4064 Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote authenticated users to gai… Eucalyptus after 3.1.0 Fix from $1,6002012-10-01 MEDIUM 5.0 CVE-2012-4063 The Apache Santuario configuration in Eucalyptus before 3.1.1 does not properly restrict applying XML Signature transforms to documents, which allows… Eucalyptus after 3.1.0 Fix from $1,6002012-10-01 HIGH 7.5 CVE-2012-3240 The Walrus service in Eucalyptus 2.0.3 and 3.0.x before 3.0.2 allows remote attackers to gain administrator privileges via a crafted REST request. Eucalyptus Mitigation only Fix from $1,9502012-07-17 HIGH 7.5 CVE-2012-3241 The VMware Broker in Eucalyptus 2.0.3 and 3.0.x before 3.0.2 does not properly authenticate SOAP requests, which allows remote attackers to execute a… Eucalyptus Mitigation only Fix from $1,9502012-07-17 HIGH 7.5 CVE-2010-3905 The password reset feature in the administrator interface for Eucalyptus 2.0.0 and 2.0.1 does not perform authentication, which allows remote attacke… Eucalyptus Mitigation only Fix from $1,9502010-12-22