Search/CVE-2015-5251
CVE

CVE-2015-5251

OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allow remote authenticated users to change the status of their images and bypass access restrictions via the HTTP x-image-meta-status header to images/*.

CVSS v3.1
EPSS
2.05%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
EPSS Trend
Aug 16, 2026Sep 1, 2026
0.02pp
2.04% → 2.05% over 2 tracked changes
Connections
2 relationships
Timeline
disclosure → media coverage
Oct 26, 2015
Disclosure — published as a CVE record. · last revised by NVD May 6, 2026