Known Vulnerabilities for products from Eucalyptus
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Eucalyptus".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-7999 json | Atlassian Eucalyptus before 4.4.1, when in EDGE mode, allows remote authenticated users with certain privileges to cause a de... | Not Provided | 2017-06-01 | 2025-04-20 |
| CVE-2016-8528 json | A Remote Escalation of Privilege vulnerability in HPE Helion Eucalyptus version 3.3.0 through 4.3.1 was found. | 8.8 - HIGH | 2018-02-15 | 2018-03-07 |
| CVE-2016-8520 json | HPE Helion Eucalyptus v4.3.0 and earlier does not correctly check IAM user's permissions for accessing versioned objects and ... | 8.8 - HIGH | 2018-02-15 | 2018-03-13 |
| CVE-2015-6861 json | HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission requi... | Not Provided | 2016-01-05 | 2026-05-06 |
| CVE-2014-5040 json | HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2.x before 4.2.1 allow remote authenticated users to bypa... | Not Provided | 2016-01-05 | 2026-05-06 |
| CVE-2014-5039 json | Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.2 allows remote attackers to... | 9.6 - CRITICAL | 2020-01-31 | 2023-11-07 |
| CVE-2014-5038 json | Eucalyptus 3.0.0 through 4.0.1, when the log level is set to DEBUG or lower, logs user and system passwords, which allows loc... | Not Provided | 2014-11-07 | 2026-05-06 |
| CVE-2014-5037 json | Eucalyptus 4.0.0 through 4.0.1, when the log level is set to INFO, logs user and system passwords, which allows local users t... | Not Provided | 2014-11-07 | 2026-05-06 |
| CVE-2014-5036 json | The Storage Controller (SC) component in Eucalyptus 3.4.2 through 4.0.x before 4.0.1, when Dell Equallogic SAN is used, logs ... | Not Provided | 2014-09-05 | 2026-05-06 |
| CVE-2013-4770 json | Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attackers to... | 6.1 - MEDIUM | 2020-01-27 | 2020-01-29 |
| CVE-2013-4769 json | The cloud controller (aka CLC) component in Eucalyptus 3.3.x and 3.4.x before 3.4.2, when the dns.recursive.enabled setting i... | Not Provided | 2014-12-26 | 2026-05-06 |
| CVE-2013-4768 json | The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote attackers to cause a denial of service via vectors related... | Not Provided | 2014-04-16 | 2026-05-06 |
| CVE-2013-4767 json | Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown impact and attack vectors. | Not Provided | 2013-10-10 | 2026-04-29 |
| CVE-2013-4766 json | The gather log service in Eucalyptus before 3.3.1 allows remote attackers to read log files via an unspecified request to the... | Not Provided | 2013-09-17 | 2026-04-29 |
| CVE-2013-2297 json | Eucalyptus EuStore sets a blank root password in the default configuration of EMI 3868652036, EMI 0400376721, EMI 2425352071,... | Not Provided | 2013-09-17 | 2026-04-29 |
| CVE-2013-2296 json | Walrus in Eucalyptus before 3.2.2 does not verify authorization for the GetBucketLoggingStatus, SetBucketLoggingStatus, and S... | Not Provided | 2013-09-17 | 2026-04-29 |
| CVE-2012-4067 json | Walrus in Eucalyptus before 3.2.2 allows remote attackers to cause a denial of service (memory, thread, and CPU consumption) ... | Not Provided | 2013-09-17 | 2026-04-29 |
| CVE-2012-4066 json | The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request ... | Not Provided | 2013-03-08 | 2026-04-29 |
| CVE-2012-4065 json | Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote au... | Not Provided | 2012-10-01 | 2026-04-29 |
| CVE-2012-4064 json | Eucalyptus before 3.1.1 does not properly restrict the binding of external SOAP web-services messages, which allows remote au... | Not Provided | 2012-10-01 | 2026-04-29 |
Known software with vulnerabilities from Eucalyptus
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Eucalyptus | Eucalyptus | - |
| Application | Eucalyptus | Eucalyptus Management Console | 4.0.0 |
| Operating System | Eucalyptus | Eustore | emi_0400376721 |