Security Advisory

CVE-2012-4501

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-10-26 10:00:00
Last updated 2024-09-17 00:41:27
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Citrix Cloud.com CloudStack, and Apache CloudStack pre-release, allows remote attackers to make arbitrary API calls by leveraging the system user account, as demonstrated by API calls to delete VMs.