Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-0028

libvirt 1.1.1 through 1.2.0 allows context-dependent attackers to bypass the domain:getattr and connect:search_domains restrictions in ACLs and obtain sensitive domain object information via a request to the (1) virConnectDomainEventRegister and (2) virConnectDomainEventRegisterAny functions in the event registration API.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.1%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2014-0028
  • Redhat » Libvirt » Version: 1.1.1
    cpe:2.3:a:redhat:libvirt:1.1.1
  • Redhat » Libvirt » Version: 1.1.2
    cpe:2.3:a:redhat:libvirt:1.1.2
  • Redhat » Libvirt » Version: 1.1.3
    cpe:2.3:a:redhat:libvirt:1.1.3
  • Redhat » Libvirt » Version: 1.1.4
    cpe:2.3:a:redhat:libvirt:1.1.4
  • Redhat » Libvirt » Version: 1.2.0
    cpe:2.3:a:redhat:libvirt:1.2.0


Contact Us

Shodan ® - All rights reserved