CVE-2018-10898
EPSS 0.17%
Description
A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.
How to fix CVE-2018-10898
To remediate CVE-2018-10898, upgrade the affected package to a fixed version below.
- PyPI/tripleo-heat-templates—upgrade to 8.0.3 or later
Is CVE-2018-10898 being exploited?
Low — EPSS is 0.2%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 8.0.3