OpenStack OpenStack Dashboard (Horizon) 18.2.0

CPE Details

OpenStack OpenStack Dashboard (Horizon) 18.2.0
18.2.0
2021-02-26
18h42 +00:00
2021-03-01
17h28 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openstack:horizon:18.2.0:*:*:*:*:*:*:*

Informations

Vendor

openstack

Product

horizon

Version

18.2.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-29565 2020-12-04 06h06 +00:00 An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and 18.5.x. There is a lack of validation of the "next" parameter, which would allow someone to supply a malicious URL in Horizon that can cause an automatic redirect to the provided malicious URL.
6.1
Medium
CVE-2014-8578 2014-10-31 15h00 +00:00 Cross-site scripting (XSS) vulnerability in the Groups panel in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows remote administrators to inject arbitrary web script or HTML via a user email address, a different vulnerability than CVE-2014-3475.
3.5