Information Disclosure in OpenStack Glance Due to Misconfiguration
CVE-2013-0212
Key Information:
- Vendor
Openstack
- Vendor
- CVE Published:
- 24 February 2013
Badges
What is CVE-2013-0212?
In certain versions of OpenStack Glance running in Swift single tenant mode, misconfigured endpoints can lead to a serious information disclosure issue. When the endpoint is either misconfigured or deemed unusable, the system inadvertently logs sensitive authentication details, including usernames and passwords, in cleartext. This vulnerability allows remote authenticated users to access error messages that contain this sensitive information, posing a significant security risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
