Search Results (25 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2013-4766 1 Eucalyptus 1 Eucalyptus 2024-08-06 N/A
The gather log service in Eucalyptus before 3.3.1 allows remote attackers to read log files via an unspecified request to the (1) Cluster Controller (CC) or (2) Node Controller (NC) component.
CVE-2013-4770 1 Eucalyptus 1 Eucalyptus Management Console 2024-08-06 6.1 Medium
Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2013-4769 1 Eucalyptus 1 Eucalyptus 2024-08-06 N/A
The cloud controller (aka CLC) component in Eucalyptus 3.3.x and 3.4.x before 3.4.2, when the dns.recursive.enabled setting is used, allows remote attackers to cause a denial of service (traffic amplification) via spoofed DNS queries.
CVE-2013-4768 1 Eucalyptus 1 Eucalyptus 2024-08-06 N/A
The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote attackers to cause a denial of service via vectors related to the "network connection clean up code" and (1) Cloud Controller (CLC), (2) Walrus, (3) Storage Controller (SC), and (4) VMware Broker (VB).
CVE-2013-4767 1 Eucalyptus 1 Eucalyptus 2024-08-06 N/A
Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown impact and attack vectors.