CVE-2013-2157
Openstack Keystone < 2012.2.4 - Authentication Bypass
Title source: ruleDescription
OpenStack Keystone Folsom, Grizzly before 2013.1.3, and Havana, when using LDAP with Anonymous binding, allows remote attackers to bypass authentication via an empty password.
References (4)
Scores
EPSS
0.0029
EPSS Percentile
51.9%
Classification
CWE
CWE-287
Status
draft
Affected Products (1)
openstack/keystone
< 2012.2.4
Timeline
Published
Aug 20, 2013
Tracked Since
Feb 18, 2026