NVD

Id
40077  
Name
CVE-2013-4477  
Description
The LDAP backend in OpenStack Identity (Keystone) Grizzly and Havana, when removing a role on a tenant for a user who does not have that role, adds the role to the user, which allows local users to gain privileges.  
Reject
 
CVSS Version
2  
CVSS Score
3.3  
Severity
Low  
CVSS Base Score
3.3  
CVSS Impact Subscore
4.9  
CVSS Exploit Subscore
3.4  
CVSS Vector
(AV:L/AC:M/Au:N/C:P/I:P/A:N)  
Pub Date
2017-01-18  
Published
2013-11-02  
Modified Date
2014-03-05  
Seq
2013-4477  

Actions