A vulnerability was found in openstack-tripleo-heat-templates before version 8.0.2-40. When deployed using Director using default configuration, Opendaylight in RHOSP13 is configured with easily guessable default credentials.
The product contains hard-coded credentials, such as a password or cryptographic key.
Link | Tags |
---|---|
https://access.redhat.com/errata/RHSA-2018:2214 | third party advisory vendor advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10898 | issue tracking third party advisory |