PT-2023-17135 · Openstack+1 · Openstack-Barbican+1

·

CVE-2023-1633

·

Published

2023-09-24

·

Updated

2026-07-07

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions OpenStack Barbican (affected versions not specified)
Description A credentials leak flaw was found in OpenStack Barbican, allowing a local authenticated attacker to read the configuration file and gain access to sensitive credentials.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Insufficiently Protected Credentials

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-03564
CVE-2023-1633
GHSA-6QQP-4VM3-359V
PYSEC-2026-1213
RHSA-2023:6231

Affected Products

Openstack-Barbican
Red Os