CVE-2015-6861
05.01.2016, 11:59
HPE Helion Eucalyptus 3.4.0 through 4.2.0 allows remote authenticated users to bypass an intended AssumeRole permission requirement and assume an IAM role by leveraging a policy setting for a user's account.Enginsight
Vendor | Product | Version |
---|---|---|
eucalyptus | eucalyptus | 3.4.0 |
eucalyptus | eucalyptus | 3.4.1 |
eucalyptus | eucalyptus | 3.4.2 |
eucalyptus | eucalyptus | 3.4.3 |
eucalyptus | eucalyptus | 4.0.0 |
eucalyptus | eucalyptus | 4.0.1 |
eucalyptus | eucalyptus | 4.0.2 |
eucalyptus | eucalyptus | 4.1.0 |
eucalyptus | eucalyptus | 4.1.1 |
eucalyptus | eucalyptus | 4.1.2 |
eucalyptus | eucalyptus | 4.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration