Field Assessment
AI analysis pending.
CVE
CVE-2014-0204
Severity
MEDIUM
CVSS
6.5
EPSS
1.39%
Original Filing — NVD Description
OpenStack Identity (Keystone) before 2014.1.1 does not properly handle when a role is assigned to a group that has the same ID as a user, which allows remote authenticated users to gain privileges that are assigned to a group with the same ID.