CVE-2015-1856

EPSS 0.86%

OpenStack Swift Unauthorized delete of versioned Swift object

發布日:2022/5/14修改日:2026/4/28

描述

OpenStack Object Storage (Swift) before 2.3.0, when allow_version is configured, allows remote authenticated users to delete the latest version of an object by leveraging listing access to the x-versions-location container.

受影響套件(2)

參考連結(18)