Known Vulnerabilities for products from Eucalyptus

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Eucalyptus".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2017-7999 json Atlassian Eucalyptus before 4.4.1, when in EDGE mode, allows remote authenticated users with certain privileges to cause a de... Not Provided 2017-06-01 2025-04-20
CVE-2016-8528 json A Remote Escalation of Privilege vulnerability in HPE Helion Eucalyptus version 3.3.0 through 4.3.1 was found. 8.8 - HIGH 2018-02-15 2018-03-07
CVE-2016-8520 json HPE Helion Eucalyptus v4.3.0 and earlier does not correctly check IAM user's permissions for accessing versioned objects and ... 8.8 - HIGH 2018-02-15 2018-03-13
CVE-2015-6861 json HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission requi... Not Provided 2016-01-05 2026-05-06
CVE-2014-5040 json HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2.x before 4.2.1 allow remote authenticated users to bypa... Not Provided 2016-01-05 2026-05-06
CVE-2014-5039 json Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.2 allows remote attackers to... 9.6 - CRITICAL 2020-01-31 2023-11-07
CVE-2014-5038 json Eucalyptus 3.0.0 through 4.0.1, when the log level is set to DEBUG or lower, logs user and system passwords, which allows loc... Not Provided 2014-11-07 2026-05-06
CVE-2014-5037 json Eucalyptus 4.0.0 through 4.0.1, when the log level is set to INFO, logs user and system passwords, which allows local users t... Not Provided 2014-11-07 2026-05-06
CVE-2014-5036 json The Storage Controller (SC) component in Eucalyptus 3.4.2 through 4.0.x before 4.0.1, when Dell Equallogic SAN is used, logs ... Not Provided 2014-09-05 2026-05-06
CVE-2013-4770 json Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attackers to... 6.1 - MEDIUM 2020-01-27 2020-01-29
CVE-2013-4769 json The cloud controller (aka CLC) component in Eucalyptus 3.3.x and 3.4.x before 3.4.2, when the dns.recursive.enabled setting i... Not Provided 2014-12-26 2026-05-06
CVE-2013-4768 json The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote attackers to cause a denial of service via vectors related... Not Provided 2014-04-16 2026-05-06
CVE-2013-4767 json Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown impact and attack vectors. Not Provided 2013-10-10 2026-04-29
CVE-2013-4766 json The gather log service in Eucalyptus before 3.3.1 allows remote attackers to read log files via an unspecified request to the... Not Provided 2013-09-17 2026-04-29
CVE-2013-2297 json Eucalyptus EuStore sets a blank root password in the default configuration of EMI 3868652036, EMI 0400376721, EMI 2425352071,... Not Provided 2013-09-17 2026-04-29
CVE-2013-2296 json Walrus in Eucalyptus before 3.2.2 does not verify authorization for the GetBucketLoggingStatus, SetBucketLoggingStatus, and S... Not Provided 2013-09-17 2026-04-29
CVE-2012-4067 json Walrus in Eucalyptus before 3.2.2 allows remote attackers to cause a denial of service (memory, thread, and CPU consumption) ... Not Provided 2013-09-17 2026-04-29
CVE-2012-4066 json The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request ... Not Provided 2013-03-08 2026-04-29
CVE-2012-4065 json Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote au... Not Provided 2012-10-01 2026-04-29
CVE-2012-4064 json Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote au... Not Provided 2012-10-01 2026-04-29

Known software with vulnerabilities from Eucalyptus

Type Vendor Product Version
ApplicationEucalyptusEucalyptus-
ApplicationEucalyptusEucalyptus Management Console4.0.0
Operating
System
EucalyptusEustoreemi_0400376721

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report