Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j57p-g33w-95c5

Опубликовано: 13 мая 2022
Источник: github
Github: Прошло ревью

Описание

OpenStack Horizon Cross-site scripting (XSS) vulnerability

Cross-site scripting (XSS) vulnerability in horizon/static/horizon/js/horizon.instances.js in the Launch Instance menu in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to inject arbitrary web script or HTML via a network name.

Пакеты

Наименование

horizon

pip
Затронутые версииВерсия исправления

< 8.0.0a0

8.0.0a0

EPSS

Процентиль: 53%
0.00303
Низкий

Дефекты

CWE-79

Связанные уязвимости

ubuntu
больше 11 лет назад

Cross-site scripting (XSS) vulnerability in horizon/static/horizon/js/horizon.instances.js in the Launch Instance menu in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to inject arbitrary web script or HTML via a network name.

redhat
больше 11 лет назад

Cross-site scripting (XSS) vulnerability in horizon/static/horizon/js/horizon.instances.js in the Launch Instance menu in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to inject arbitrary web script or HTML via a network name.

nvd
больше 11 лет назад

Cross-site scripting (XSS) vulnerability in horizon/static/horizon/js/horizon.instances.js in the Launch Instance menu in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows remote authenticated users to inject arbitrary web script or HTML via a network name.

debian
больше 11 лет назад

Cross-site scripting (XSS) vulnerability in horizon/static/horizon/js/ ...

EPSS

Процентиль: 53%
0.00303
Низкий

Дефекты

CWE-79