OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly handle session records when using a db or memcached session engine, which allows remote attackers to cause a denial of service via a large number of requests to the login page.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2014-12-12T15:00:00

Updated: 2024-08-06T13:10:50.827Z

Reserved: 2014-10-10T00:00:00

Link: CVE-2014-8124

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2014-12-12T15:59:09.557

Modified: 2023-02-13T00:43:19.807

Link: CVE-2014-8124

cve-icon Redhat

Severity : Moderate

Publid Date: 2014-12-09T00:00:00Z

Links: CVE-2014-8124 - Bugzilla