Information Disclosure Vulnerability in OpenDaylight Helium
CVE-2015-1857
5.3MEDIUM
Summary
The odl-mdsal-apidocs feature in OpenDaylight Helium is susceptible to an information disclosure vulnerability that allows remote attackers to gain access to sensitive information due to the absence of proper authentication and authorization (AAA) restrictions. This oversight can lead to unauthorized data exposure, posing significant risks to the integrity and confidentiality of user data. Organizations utilizing OpenDaylight Helium should ensure their systems are updated and implement robust security measures to mitigate potential threats.
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved