Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-3654

Опубликовано: 02 мар. 2022
Источник: ubuntu
Приоритет: low
EPSS Высокий
CVSS2: 4
CVSS3: 6.1

Описание

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.

РелизСтатусПримечание
bionic

released

2:17.0.13-0ubuntu5.3
devel

not-affected

3:26.1.0+git2023012815.98daf501-0ubuntu1
esm-infra-legacy/trusty

DNE

esm-infra/bionic

released

2:17.0.13-0ubuntu5.3
esm-infra/focal

released

2:21.2.4-0ubuntu2.1
esm-infra/xenial

released

2:13.1.4-0ubuntu4.5+esm1
focal

released

2:21.2.4-0ubuntu2.1
hirsute

ignored

end of life
impish

ignored

end of life
jammy

not-affected

3:25.0.0-0ubuntu1

Показывать по

EPSS

Процентиль: 99%
0.87982
Высокий

4 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.7
redhat
больше 4 лет назад

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.

CVSS3: 6.1
nvd
почти 4 года назад

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.

CVSS3: 6.1
debian
почти 4 года назад

A vulnerability was found in openstack-nova's console proxy, noVNC. By ...

CVSS3: 6.1
github
почти 4 года назад

Open Redirect in CPython that affects users of OpenStack Nova

EPSS

Процентиль: 99%
0.87982
Высокий

4 Medium

CVSS2

6.1 Medium

CVSS3