Vulnerabilities
Vulnerable Software
Clusterlabs:  >> Pcs  >> 0.9.116  Security Vulnerabilities
A flaw was found in the Pacemaker configuration tool (pcs). The pcs daemon was allowing expired accounts, and accounts with expired passwords to login when using PAM authentication. Therefore, unprivileged expired accounts that have been denied access could still login.
CVSS Score
8.8
EPSS Score
0.001
Published
2022-03-25
ClusterLabs pcs before version 0.9.157 is vulnerable to a cross-site scripting vulnerability due to improper validation of Node name field when creating new cluster or adding existing cluster.
CVSS Score
6.1
EPSS Score
0.001
Published
2018-03-12
Cross-site request forgery (CSRF) vulnerability in pcsd web UI in pcs before 0.9.149.
CVSS Score
8.8
EPSS Score
0.002
Published
2017-04-21
Session fixation vulnerability in pcsd in pcs before 0.9.157.
CVSS Score
8.1
EPSS Score
0.003
Published
2017-04-21


Contact Us

Shodan ® - All rights reserved