openstack image-registry-delivery-service-glance CVE-2015-5251 is a vulnerability in OpenStack Image Registry Delivery Service Glance
Published on October 26, 2015

OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allow remote authenticated users to change the status of their images and bypass access restrictions via the HTTP x-image-meta-status header to images/*.

Vendor Advisory NVD


Products Associated with CVE-2015-5251

Want to know whenever a new CVE is published for OpenStack Image Registry Delivery Service Glance? stack.watch will email you.

 

Exploit Probability

EPSS
0.17%
Percentile
38.41%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.