Описание
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 3:12.0.0~rc2-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1:2014.1.5-0ubuntu2.1]] |
| esm-infra/xenial | not-affected | 2:9.1.2-0ubuntu1 |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
| trusty | released | 1:2014.1.5-0ubuntu2.1 |
| trusty/esm | DNE | trusty was released [1:2014.1.5-0ubuntu2.1] |
| upstream | needs-triage | |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE |
Показывать по
3.5 Low
CVSS2
5.4 Medium
CVSS3
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horiz ...
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
3.5 Low
CVSS2
5.4 Medium
CVSS3