Back

CRITICAL

Contrail Service Orchestration: Hardcoded credentials for Keystone service.

Published Jul 11, 2018

Description

Juniper Networks Contrail Service Orchestration releases prior to 3.3.0 use hardcoded credentials to access Keystone service. These credentials allow network based attackers unauthorized access to information stored in keystone.

Affected products

Remediation

Vendor solution

This issue is fixed in Contrail Service Orchestration 3.3.0 and subsequent releases.

Metrics

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner juniper
Published Jul 11, 2018
Updated Sep 16, 2024
Reserved Nov 16, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a