CVE Database
/

CVE-2021-4180

Back to search

CVE-2021-4180

Published: Mar 23, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

An information exposure flaw in openstack-tripleo-heat-templates allows an external user to discover the internal IP or hostname. An attacker could exploit this by checking the www_authenticate_uri parameter (which is visible to all end users) in configuration files. This would give sensitive information which may aid in additional system exploitation. This flaw affects openstack-tripleo-heat-templates versions prior to 11.6.1.

VendorProductVersions

n/a

openstack-tripleo-heat-templates

affected
openstack-tripleo-heat-templates versions prior to 11.6.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now