Skip to main content

Vendor/product archive

openstack / python-keystoneclient CVEs

Beta · best-effort

7 CVEs tagged to openstack / python-keystoneclient2 Critical, 0 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2014-0105

Published Apr 15, 2014

The auth_token middleware in the OpenStack Python client library for Keystone (aka python-keystoneclient) before 0.7.0 does not properly retrieve user tokens from memcache, which…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-2104

Published Jan 21, 2014

python-keystoneclient before 0.2.4, as used in OpenStack Keystone (Folsom), does not properly check expiry for PKI tokens, which allows remote authenticated users to (1) retain us…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-2013

Published Oct 1, 2013

The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argument, which allows local users to obtain sensitive informatio…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1