CVE-2015-5306

OpenStack Ironic Inspector (aka ironic-inspector or ironic-discoverd), when debug mode is enabled, might allow remote attackers to access the Flask console and execute arbitrary Python code by triggering an error.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 63%
VendorProductVersion
openstackironic_inspector
*
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
ironic-inspector
bullseye
10.4.1-1
fixed
bookworm
11.1.0-2
fixed
sid
12.3.0-2
fixed
trixie
12.3.0-2
fixed
Common Weakness Enumeration