PT-2023-17135 · Openstack+1 · Openstack-Barbican+1

Ade Lee

+1

·

Published

2023-09-24

·

Updated

2026-01-29

·

CVE-2023-1633

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions OpenStack Barbican (affected versions not specified)
Description A credentials leak flaw was found in OpenStack Barbican, allowing a local authenticated attacker to read the configuration file and gain access to sensitive credentials.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insufficiently Protected Credentials

Information Disclosure

Weakness Enumeration

Related Identifiers

BDU:2026-03564
CVE-2023-1633
GHSA-6QQP-4VM3-359V
RHSA-2023:6231

Affected Products

Openstack-Barbican
Red Os