Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Dave Walker

#41942of 53,634
6.5Total CVSS
Vulnerabilities · 1
PT-2011-2591
6.5
2011-06-02
Eucalyptus · Eucalyptus Ee · CVE-2011-0730
**Name of the Vulnerable Software and Affected Versions** Eucalyptus versions prior to 2.0.3 Eucalyptus EE versions prior to 2.0.2 **Description** The issue is related to the improper interpretation of signed elements in SOAP requests, which can be exploited by man-in-the-middle attackers to execute arbitrary commands by modifying a request. This is related to an "XML Signature Element Wrapping" or a "SOAP signature replay" issue. **Recommendations** For Eucalyptus versions prior to 2.0.3, update to version 2.0.3 or later. For Eucalyptus EE versions prior to 2.0.2, update to version 2.0.2 or later.