CVE-2014-0234
The default configuration of broker.conf in Red Hat OpenShift Enterprise 2.x before 2.1 has a password of "mooo" for a Mongo account, which allows remote attackers to hijack the broker by providing this password, related to the openshift.sh script in Openshift Extras before 20130920. NOTE: this may overlap CVE-2013-4253 and CVE-2013-4281.
- Affected products
- Openshift
- Redhat Openshift
- < 2.1
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 3.8% (89th percentile)
- Weakness
- CWE-1188
- NVD status
- Modified
- Published
- 2020-02-12
CVE-2014-0234 at NVD
No indexed exploits for CVE-2014-0234 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2014-0234 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.