Openstack Manila 1.0.0

CPE Details

Openstack Manila 1.0.0
1.0.0
2020-04-01
10h35 +00:00
2020-04-01
10h35 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openstack:manila:1.0.0:*:*:*:*:*:*:*

Informations

Vendor

openstack

Product

manila

Version

1.0.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-9543 2020-03-12 15h40 +00:00 OpenStack Manila <7.4.1, >=8.0.0 <8.1.1, and >=9.0.0 <9.1.1 allows attackers to view, update, delete, or share resources that do not belong to them, because of a context-free lookup of a UUID. Attackers may also create resources, such as shared file systems and groups of shares on such share networks.
8.3
High
CVE-2016-6519 2017-04-21 13h00 +00:00 Cross-site scripting (XSS) vulnerability in the "Shares" overview in Openstack Manila before 2.5.1 allows remote authenticated users to inject arbitrary web script or HTML via the Metadata field in the "Create Share" form.
5.4
Medium