Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-3654

Опубликовано: 02 мар. 2022
Источник: debian
EPSS Высокий

Описание

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
novafixed2:23.0.2-3package
novano-dsabullseyepackage
novano-dsabusterpackage
novano-dsastretchpackage

Примечания

  • https://bugs.launchpad.net/nova/+bug/1927677

  • Errata: https://www.openwall.com/lists/oss-security/2021/09/27/1

EPSS

Процентиль: 99%
0.87982
Высокий

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 4 года назад

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.

CVSS3: 5.7
redhat
больше 4 лет назад

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.

CVSS3: 6.1
nvd
почти 4 года назад

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.

CVSS3: 6.1
github
почти 4 года назад

Open Redirect in CPython that affects users of OpenStack Nova

EPSS

Процентиль: 99%
0.87982
Высокий