Apache CloudStack CVE-2013-2756 Authentication Bypass Vulnerability
BID:59463
Info
Apache CloudStack CVE-2013-2756 Authentication Bypass Vulnerability
| Bugtraq ID: | 59463 |
| Class: | Design Error |
| CVE: |
CVE-2013-2756 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 24 2013 12:00AM |
| Updated: | Apr 24 2013 12:00AM |
| Credit: | Wolfram Schlich and Mathijs Schmittmann |
| Vulnerable: |
Citrix CloudStack 3.0.6 Citrix CloudStack 3.0.5 Citrix CloudStack 3.0.4 Citrix CloudStack 3.0 Apache CloudStack 4.0.1-incubating Apache CloudStack 4.0.0-incubating |
| Not Vulnerable: |
Apache CloudStack 4.0.2 |
Exploit / POC
Apache CloudStack CVE-2013-2756 Authentication Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Apache CloudStack CVE-2013-2756 Authentication Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Apache CloudStack CVE-2013-2756 Authentication Bypass Vulnerability
References:
References:
- Apache CloudStack 4.0.2 Released (Apache Software Foundation)
- Apache CloudStack Homepage (Apache Software Foundation)
- Apache CloudStack Security Advisory: Multiple vulnerabilities in Apache CloudSta (John Kinsella)
- Citrix CloudPlatform Multiple Security Updates (Citrix)