CVE Vulnerabilities

CVE-2012-4501

Published: Oct 26, 2012 | Modified: Oct 26, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Citrix Cloud.com CloudStack, and Apache CloudStack pre-release, allows remote attackers to make arbitrary API calls by leveraging the system user account, as demonstrated by API calls to delete VMs.

Affected Software

Name Vendor Start Version End Version
Cloudstack Apache - -
Cloudstack Citrix - -

References