Essex
This hub aggregates every CVE we track for Essex, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
15
CVEs tracked
0
Critical
2
High
0
In CISA KEV
Severity distribution
MEDIUM12HIGH2LOW1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Essex.
- CVE-2013-1838OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) does not properly implement a quota for fixed IPs, which allows remote authenticated users to cause a denial of service (resour...4.0
- CVE-2013-0335Openstack nova: vnc proxy can connect to the wrong vm7.6
- CVE-2013-0266Puppetlabs-cinder: packstack: openstack: puppetlabs-cinder: information disclosure of openstack administrative passwords due to world-readable configuration files.5.5
- CVE-2013-0261Packstack: packstack: arbitrary file overwrite via symlink attack8.8
- CVE-2013-0208The boot-from-volume feature in OpenStack Compute (Nova) Folsom and Essex, when using nova-volumes, allows remote authenticated users to boot from other users' volumes via a volume id in the block_...6.5
- CVE-2012-5571Openstack keystone: openstack keystone: authorization bypass via improper ec2 token handling5.4
- CVE-2012-5482The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request. NOTE: this vul...5.5
- CVE-2012-4573The v1 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request, a different vul...5.5
- CVE-2012-3542OpenStack Keystone, as used in OpenStack Folsom before folsom-rc1 and OpenStack Essex (2012.1), allows remote attackers to add an arbitrary user to an arbitrary tenant via a request to update the u...4.3
- CVE-2012-3426OpenStack Keystone before 2012.1.1, as used in OpenStack Folsom before Folsom-1 and OpenStack Essex, does not properly implement token expiration, which allows remote authenticated users to bypass ...4.9
- CVE-2012-3360Directory traversal vulnerability in virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2) and Essex (2012.1), when used over libvirt-based hypervisors, allows remote authenticated users to ...5.5
- CVE-2012-3361virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an...5.5
- CVE-2012-3371The Nova scheduler in OpenStack Compute (Nova) Folsom (2012.2) and Essex (2012.1), when DifferentHostFilter or SameHostFilter is enabled, allows remote authenticated users to cause a denial of serv...3.5
- CVE-2012-2654The (1) EC2 and (2) OS APIs in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) do not properly check the protocol when security groups are created and the network prot...4.3
- CVE-2012-0030Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI request with a modified project_id URI p...4.9
Product normalization is registry-driven with AI assist and human review. How it works