CVE-2014-9593

Apache CloudStack <4.3.2, <4.4.2 - Info Disclosure

Title source: llm
STIX 2.1

Description

Apache CloudStack before 4.3.2 and 4.4.x before 4.4.2 allows remote attackers to obtain private keys via a listSslCerts API call.

References (4)

Core 4

Scores

EPSS 0.0270
EPSS Percentile 86.1%

Details

CWE
CWE-200
Status published
Products (3)
apache/cloudstack 4.4.0
apache/cloudstack 4.4.1
apache/cloudstack < 4.3.1
Published Jan 15, 2015
Tracked Since Feb 18, 2026