Описание
A reflected Cross-site scripting (XSS) vulnerability was found in the Red Hat OpenStack Platform dashboard. This issue could allow an attacker to trick a user into pasting malicious code in the “Allocation Pools” instance.
Отчет
Red Hat Product Security does not consider this to be a vulnerability.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat OpenStack Platform 13 (Queens) | openstack-horizon-base-container | Not affected | ||
| Red Hat OpenStack Platform 13 (Queens) | puppet-horizon | Not affected | ||
| Red Hat OpenStack Platform 13 (Queens) | python-django-horizon | Not affected | ||
| Red Hat OpenStack Platform 13 (Queens) | python-horizon-tests-tempest | Not affected | ||
| Red Hat OpenStack Platform 13 (Queens) | rhosp13/openstack-horizon | Not affected | ||
| Red Hat OpenStack Platform 16.1 | openstack-horizon-container | Not affected | ||
| Red Hat OpenStack Platform 16.1 | puppet-horizon | Not affected | ||
| Red Hat OpenStack Platform 16.1 | python-django-horizon | Not affected | ||
| Red Hat OpenStack Platform 16.1 | python-horizon-tests-tempest | Not affected | ||
| Red Hat OpenStack Platform 16.1 | python-networking-bgpvpn | Not affected |
Показывать по
10
Дополнительная информация
Дефект:
CWE-80
https://bugzilla.redhat.com/show_bug.cgi?id=2147389openstack-horizon: reflected XSS
0 Low
CVSS3
Связанные уязвимости
0 Low
CVSS3