CVE-2013-2104 is a vulnerability in OpenStack Python Keystoneclient
Published on January 21, 2014
python-keystoneclient before 0.2.4, as used in OpenStack Keystone (Folsom), does not properly check expiry for PKI tokens, which allows remote authenticated users to (1) retain use of a token after it has expired, or (2) use a revoked token once it expires.
Products Associated with CVE-2013-2104
Want to know whenever a new CVE is published for OpenStack Python Keystoneclient? stack.watch will email you.
Exploit Probability
EPSS
0.77%
Percentile
73.24%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.