CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.9. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2014-5253
Severity
MEDIUM
CVSS
4.9
EPSS
1.49%
Original NVD Description
OpenStack Identity (Keystone) 2014.1.x before 2014.1.2.1 and Juno before Juno-3 does not properly revoke tokens when a domain is invalidated, which allows remote authenticated users to retain access via a domain-scoped token for that domain.