Security Advisory
CVE-2014-9593
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Apache CloudStack before 4.3.2 and 4.4.x before 4.4.2 allows remote attackers to obtain private keys via a listSslCerts API call.