Information Exposure Vulnerability in FusionSphere OpenStack by Huawei
CVE-2017-2720
5.3MEDIUM
What is CVE-2017-2720?
FusionSphere OpenStack V100R006C00 is susceptible to an information exposure vulnerability that arises from the use of hard-coded cryptographic keys for message encryption among its components. This design flaw significantly threatens the confidentiality of the encrypted messages, allowing potential attackers to recover sensitive data. Organizations using this affected version should take immediate steps to mitigate the risks associated with this vulnerability.
Affected Version(s)
FusionSphere OpenStack V100R006C00