Vulnerability Details CVE-2013-2144
Red Hat Enterprise Virtualization Manager (RHEVM) before 3.2 does not properly check permissions for the target storage domain, which allows attackers to cause a denial of service (disk space consumption) by cloning a VM from a snapshot.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.1%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2013-2144
-
cpe:2.3:a:redhat:enterprise_virtualization_manager:2.1
-
cpe:2.3:a:redhat:enterprise_virtualization_manager:2.2
-
cpe:2.3:a:redhat:enterprise_virtualization_manager:2.2.3
-
cpe:2.3:a:redhat:enterprise_virtualization_manager:3.0
-
cpe:2.3:a:redhat:enterprise_virtualization_manager:3.1