CVE-2014-0031 Information
Feb 14, 2021
cve
Description
The (1) ListNetworkACL and (2) listNetworkACLLists APIs in Apache CloudStack before 4.2.1 allow remote authenticated users to list network ACLS for other users via a crafted request.
Reference
http://secunia.com/advisories/55960 https://blogs.apache.org/cloudstack/entry/cve_2014_0031_cloudstack_listnetworkacl https://issues.apache.org/jira/browse/CLOUDSTACK-5145
Share on: