← Vulnerability feed

Vulnerability record · CVE-2014-3520 · published 26 October 2014

CVE-2014-3520: Openstack keystone incorrect authorization vulnerability

Openstack · Keystone

OpenStack Identity (Keystone) before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2 allows remote authenticated trustees to gain access to an unauthorized project for which the trustor has certain roles via the project ID in a V2 API trust token request.

6.5 CVSS 2.0 Medium EPSS 1.9% · top 21.1% CWE-863 · Incorrect authorization
6.5CVSS 2.0 base score
1.9%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

OpenStack Identity (Keystone) before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2 allows remote authenticated trustees to gain access to an unauthorized project for which the trustor has certain roles via the project ID in a V2 API trust token request.

AV:N/AC:L/Au:S/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2014-3520 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2026-42998Openstack keystone incorrect authorization vulnerabilityAn issue was discovered in OpenStack Keystone before 29.0.2. The Keystone application credential authentication plugin does not verify that the user …EPSS 0.40%8.8CVE-2026-42999Openstack keystone incorrect authorization vulnerabilityAn issue was discovered in OpenStack Keystone before 29.0.2. The Keystone RBAC policy enforcer in enforce_call unconditionally merges the raw JSON re…EPSS 0.42%8.8CVE-2026-43000Openstack keystone incorrect authorization vulnerabilityAn issue was discovered in OpenStack Keystone before 29.0.2. When combined with an application credential impersonation vulnerability, an attacker wi…EPSS 0.43%8.8CVE-2020-12689Openstack keystone improper privilege management vulnerabilityAn issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. Any user authenticated within a limited scope (trust/oauth/application crede…EPSS 1.6%8.8CVE-2020-12690Openstack keystone insufficient session expiration vulnerabilityAn issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. The list of roles provided for an OAuth1 access token is silently ignored. T…EPSS 1.9%8.8CVE-2020-12691Openstack keystone incorrect authorization vulnerabilityAn issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. Any authenticated user can create an EC2 credential for themselves for a pro…EPSS 4.9%8.8CVE-2019-19687Openstack keystone insufficiently protected credentials vulnerabilityOpenStack Keystone 15.0.0 and 16.0.0 is affected by Data Leakage in the list credentials API. Any user with a role on a project is able to list any c…EPSS 1.8%8.1CVE-2026-44394Openstack keystone incorrect authorization vulnerabilityAn issue was discovered in OpenStack Keystone before 29.0.2. The Keystone federated token rescoping mechanism does not propagate the original token's…EPSS 0.32%

Source: NIST National Vulnerability Database (record CVE-2014-3520), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.