CVE-2021-4180
Published: Mar 23, 2022
Modified: Aug 3, 2024
Description
An information exposure flaw in openstack-tripleo-heat-templates allows an external user to discover the internal IP or hostname. An attacker could exploit this by checking the www_authenticate_uri parameter (which is visible to all end users) in configuration files. This would give sensitive information which may aid in additional system exploitation. This flaw affects openstack-tripleo-heat-templates versions prior to 11.6.1.
| Vendor | Product | Versions |
|---|---|---|
n/a | openstack-tripleo-heat-templates | affected openstack-tripleo-heat-templates versions prior to 11.6.1 |
Weaknesses (CWE)
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now