CVE-2013-2006
OpenStack Keystone 2013.1.1 - Sensitive Information Exposure via DEBUG Mode Logging
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-2006. PoCs published by LogSec.
AI-analyzed exploit summary The repository appears to be a partial or incomplete snapshot of the OpenStack Keystone project, lacking any exploit code or proof-of-concept for CVE-2013-2006. The README only references a GitHub commit without further details.
Description
OpenStack Identity (Keystone) Grizzly 2013.1.1, when DEBUG mode logging is enabled, logs the (1) admin_token and (2) LDAP password in plaintext, which allows local users to obtain sensitive by reading the log file.
Exploits (1)
The repository appears to be a partial or incomplete snapshot of the OpenStack Keystone project, lacking any exploit code or proof-of-concept for CVE-2013-2006. The README only references a GitHub commit without further details.