Unauthenticated Deletion and Snapshot Upload Vulnerability in Walrus Internal Message Protocol

Unauthenticated Deletion and Snapshot Upload Vulnerability in Walrus Internal Message Protocol

CVE-2012-4066 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:N

The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request headers, which allows attackers to (1) delete or (2) upload snapshots.

Learn more about our Internal Network Penetration Testing.