CVE-2016-6829: Barclamp-Trove Project Barclamp-Trove

Critical severity, CVSS 9.8. EPSS: 2.4% chance of exploitation in the next 30 days.

The trove service user in (1) Openstack deployment (aka crowbar-openstack) and (2) Trove Barclamp (aka barclamp-trove and crowbar-barclamp-trove) in the Crowbar Framework has a default password, which makes it easier for remote attackers to obtain access via unspecified vectors.

Affected products

Published 2016-12-09. Last modified 2026-06-17.