CVE-2013-2013
Openstack Python-keystoneclient < 0.2.3 - Information Disclosure
Title source: ruleDescription
The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argument, which allows local users to obtain sensitive information by listing the process.
Scores
EPSS
0.0006
EPSS Percentile
19.9%
Classification
CWE
CWE-200
Status
draft
Affected Products (3)
openstack/python-keystoneclient
< 0.2.3
openstack/python-keystoneclient
pypi/python-keystoneclient
< 0.2.4PyPI
Timeline
Published
Oct 01, 2013
Tracked Since
Feb 18, 2026