Record summary

CVE-2015-7945 has a selected CVSS score of 7.5 (high); EIP currently links 1 catalogued exploit.

Description

The RESTful control interface (aka RAPI or ganeti-rapi) in Ganeti before 2.9.7, 2.10.x before 2.10.8, 2.11.x before 2.11.8, 2.12.x before 2.12.6, 2.13.x before 2.13.3, 2.14.x before 2.14.2, and 2.15.x before 2.15.2 allows remote attackers to obtain the DRBD secret via instance information job results.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBGaneti - Multiple VulnerabilitiesExploitDB exploitby Pierre KimNot analyzed1 file

linked to 2 vulnerabilities

ExploitDB

PoC details

References

12