OpenStack Object Storage (swift) 2.30.0

CPE Details

OpenStack Object Storage (swift) 2.30.0
2.30.0
2023-09-28
09h09 +00:00
2023-09-28
09h09 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openstack:swift:2.30.0:*:*:*:*:*:*:*

Informations

Vendor

openstack

Product

swift

Version

2.30.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-47950 2023-01-17 23h00 +00:00 An issue was discovered in OpenStack Swift before 2.28.1, 2.29.x before 2.29.2, and 2.30.0. By supplying crafted XML files, an authenticated user may coerce the S3 API into returning arbitrary file contents from the host server, resulting in unauthorized read access to potentially sensitive data. This impacts both s3api deployments (Rocky or later), and swift3 deployments (Queens and earlier, no longer actively developed).
6.5
Medium