CVE-2016-7031
EUVD-2016-791603.10.2016, 18:59
The RGW code in Ceph before 10.0.1, when authenticated-read ACL is applied to a bucket, allows remote attackers to list the bucket contents via a URL.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ceph_project | ceph | 𝑥 ≤ 10.0.0 |
| redhat | ceph_storage | 𝑥 ≤ 1.3.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References