openstack horizon CVE-2012-5474 vulnerability in OpenStack and Other Products
Published on December 30, 2019

product logo product logo product logo product logo
The file /etc/openstack-dashboard/local_settings within Red Hat OpenStack Platform 2.0 and RHOS Essex Release (python-django-horizon package before 2012.1.1) is world readable and exposes the secret key value.

NVD


Products Associated with CVE-2012-5474

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2012-5474 are published in these products:

 
 
 
 

Affected Versions

python-django-horizon Version before 2012.1.1 is affected by CVE-2012-5474

Exploit Probability

EPSS
0.07%
Percentile
20.63%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.