CVE detail
CVE-2014-7230 — CVE-2014-7230
Published 2014-10-08 · Modified 2026-06-17 · Vendor openstack · Product cinder · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0047
EPSS probability
exploitation probability, 30d
38.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The processutils.execute function in OpenStack oslo-incubator, Cinder, Nova, and Trove before 2013.2.4 and 2014.1 before 2014.1.3 allows local users to obtain passwords from commands that cause a ProcessExecutionError by reading the log.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References