First published: Tue Mar 10 2015(Updated: )
The log-viewing function in the Red Hat redhat-access-plugin before 6.0.3 for OpenStack Dashboard (horizon) allows remote attackers to read arbitrary files via a crafted path.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat OpenStack for IBM Power | =5.0 | |
Red Hat OpenStack for IBM Power | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0271 is classified as a medium severity vulnerability.
To fix CVE-2015-0271, update the Red Hat OpenStack to version 6.0.3 or later.
CVE-2015-0271 affects Red Hat OpenStack versions 5.0 and 6.0.
Yes, CVE-2015-0271 can allow remote attackers to read arbitrary files, potentially leading to unauthorized access.
Specific exploits for CVE-2015-0271 are not publicly disclosed, but the vulnerability itself poses a risk.