{"id":"CVE-2016-4985","aliases":["GHSA-f7cr-7c2c-fm8r","PYSEC-2026-646"],"url":"https://o3.security/vulnerability/CVE-2016-4985","summary":"OpenStack Ironic Exposure of Sensitive Information to an Unauthorized Actor","details":"The ironic-api service in OpenStack Ironic before 4.2.5 (Liberty) and 5.x before 5.1.2 (Mitaka) allows remote attackers to obtain sensitive information about a registered node by leveraging knowledge of the MAC address of a network card belonging to that node and sending a crafted POST request to the v1/drivers/$DRIVER_NAME/vendor_passthru resource.","published":"2016-07-12T19:59:04.303Z","modified":"2026-07-06T08:11:24.871902593Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},"epss":{"score":0.0286,"percentile":0.86056,"asOf":"2026-09-16"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"ironic","fixedVersion":"4.2.5"},{"ecosystem":"PyPI","name":"ironic","fixedVersion":"5.1.2"}],"fix":null,"references":[{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2016/06/21/6"},{"type":"WEB","url":"https://review.openstack.org/332195"},{"type":"WEB","url":"https://review.openstack.org/332196"},{"type":"WEB","url":"https://review.openstack.org/332197"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2016:1377"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2016:1378"},{"type":"ADVISORY","url":"https://bugs.launchpad.net/ironic/+bug/1572796"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-06T08:11:24.871902593Z"}}