CVE-2012-5474 vulnerability in OpenStack and Other Products
Published on December 30, 2019
The file /etc/openstack-dashboard/local_settings within Red Hat OpenStack Platform 2.0 and RHOS Essex Release (python-django-horizon package before 2012.1.1) is world readable and exposes the secret key value.
Products Associated with CVE-2012-5474
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2012-5474 are published in these products:
Affected Versions
python-django-horizon Version before 2012.1.1 is affected by CVE-2012-5474Exploit Probability
EPSS
0.07%
Percentile
20.63%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.