CyberSec.Space Logo
Back to CVE Browser

CVE-2019-10138

HIGH
8.8
CVSS Severity Score
EPSS Score0.1800%
EPSS Percentile17.46th
PublishedJul 30, 2019
Last ModifiedNov 21, 2024

Vulnerability Description

A flaw was discovered in the python-novajoin plugin, all versions up to, excluding 1.1.1, for Red Hat OpenStack Platform. The novajoin API lacked sufficient access control, allowing any keystone authenticated user to generate FreeIPA tokens.

Affected Platforms (CPE)

πŸ“¦
Python

Novajoin

< 1.1.1

References & Advisories

Related Vulnerabilities