CVE-2013-1815

A flaw was found in PackStack. This vulnerability allows a local user to modify deployed systems by changing the answer file, which is created in insecure directories such as /tmp or the current working directory. This insecure file creation could lead to unauthorized system modifications.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:openstack_essex:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openstack_folsom:-:*:*:*:*:*:*:*
cpe:2.3:a:redhat:packstack:2012.2.3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2013-04-10 15:55

Updated : 2026-06-16 23:52


NVD link : CVE-2013-1815

Mitre link : CVE-2013-1815

CVE.ORG link : CVE-2013-1815


JSON object : View

Products Affected

redhat

  • packstack
  • openstack_essex
  • openstack_folsom
CWE
CWE-379

Creation of Temporary File in Directory with Insecure Permissions

CWE-255

Credentials Management Errors