Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Anndymaktub

#31167de 53,635
8.2CVSS total
Vulnerabilidades · 1
PT-2012-6028
8.2
2012-12-18
Openstack · Openstack Keystone · CVE-2012-5563
**Name of the Vulnerable Software and Affected Versions** OpenStack Keystone version 2012.2 **Description** The issue is related to the improper implementation of token expiration in OpenStack Keystone, allowing remote authenticated users to bypass intended authorization restrictions. This is achieved by creating new tokens through token chaining. **Recommendations** For OpenStack Keystone version 2012.2, update the token expiration mechanism to prevent token chaining and ensure proper authorization restrictions are enforced.