Описание
ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers and RHEV-M 4.0, allows physically proximate attackers to bypass a webadmin session timeout restriction via vectors related to UI selections, which trigger repeating queries.
Ссылки
- Third Party AdvisoryVDB Entry
- ExploitIssue Tracking
- Third Party AdvisoryVDB Entry
- ExploitIssue Tracking
Уязвимые конфигурации
EPSS
6.8 Medium
CVSS3
4.6 Medium
CVSS2
Дефекты
Связанные уязвимости
ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers and RHEV-M 4.0, allows physically proximate attackers to bypass a webadmin session timeout restriction via vectors related to UI selections, which trigger repeating queries.
ovirt-engine-webadmin, as used in Red Hat Enterprise Virtualization Manager (aka RHEV-M) for Servers and RHEV-M 4.0, allows physically proximate attackers to bypass a webadmin session timeout restriction via vectors related to UI selections, which trigger repeating queries.
EPSS
6.8 Medium
CVSS3
4.6 Medium
CVSS2