Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5h6f-94qc-p3v7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

It was discovered that OpenShift Container Platform's (OCP) distribution of Kibana could open in an iframe, which made it possible to intercept and manipulate requests. This flaw allows an attacker to trick a user into performing arbitrary actions in OCP's distribution of Kibana, such as clickjacking.

It was discovered that OpenShift Container Platform's (OCP) distribution of Kibana could open in an iframe, which made it possible to intercept and manipulate requests. This flaw allows an attacker to trick a user into performing arbitrary actions in OCP's distribution of Kibana, such as clickjacking.

EPSS

Процентиль: 33%
0.00134
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-1021
CWE-358

Связанные уязвимости

CVSS3: 3.1
redhat
около 6 лет назад

It was discovered that OpenShift Container Platform's (OCP) distribution of Kibana could open in an iframe, which made it possible to intercept and manipulate requests. This flaw allows an attacker to trick a user into performing arbitrary actions in OCP's distribution of Kibana, such as clickjacking.

CVSS3: 4.3
nvd
больше 4 лет назад

It was discovered that OpenShift Container Platform's (OCP) distribution of Kibana could open in an iframe, which made it possible to intercept and manipulate requests. This flaw allows an attacker to trick a user into performing arbitrary actions in OCP's distribution of Kibana, such as clickjacking.

CVSS3: 4.3
debian
больше 4 лет назад

It was discovered that OpenShift Container Platform's (OCP) distributi ...

EPSS

Процентиль: 33%
0.00134
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-1021
CWE-358