CVE-2013-6480
Apache Libcloud 0.12.3-0.13.2 - Exposure of Sensitive Information via DigitalOcean Destroy API
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-6480. PoCs published by anonymous.
AI-analyzed exploit summary The provided text describes a local information-disclosure vulnerability in Apache Libcloud versions 0.12.3 through 0.13.2. The included command is a generic Linux command to dump and extract strings from a disk, which is unrelated to the vulnerability itself.
Description
Libcloud 0.12.3 through 0.13.2 does not set the scrub_data parameter for the destroy DigitalOcean API, which allows local users to obtain sensitive information by leveraging a new VM.
Exploits (1)
The provided text describes a local information-disclosure vulnerability in Apache Libcloud versions 0.12.3 through 0.13.2. The included command is a generic Linux command to dump and extract strings from a disk, which is unrelated to the vulnerability itself.