Sploitus

CVE-2012-3361

No indexed exploits for CVE-2012-3361 yet

virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image.

Affected products
Openstack Compute
Openstack Diablo
= 2011.3
Openstack Essex
= 2012.1
Openstack Folsom
= 2012.2
Fix
Available
CVSS 2.0
5.5 MEDIUM
EPSS
2.6% (84th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2012-07-22
CVE-2012-3361 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2012-3361 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2012-3361 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.