Openstack Manila 1.0.2

CPE Details

Openstack Manila 1.0.2
1.0.2
2020-04-01
10h35 +00:00
2020-04-01
10h35 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:openstack:manila:1.0.2:*:*:*:*:*:*:*

Informations

Vendor

openstack

Product

manila

Version

1.0.2

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2020-9543 2020-03-12 15h40 +00:00 OpenStack Manila <7.4.1, >=8.0.0 <8.1.1, and >=9.0.0 <9.1.1 allows attackers to view, update, delete, or share resources that do not belong to them, because of a context-free lookup of a UUID. Attackers may also create resources, such as shared file systems and groups of shares on such share networks.
8.3
Haute
CVE-2016-6519 2017-04-21 13h00 +00:00 Cross-site scripting (XSS) vulnerability in the "Shares" overview in Openstack Manila before 2.5.1 allows remote authenticated users to inject arbitrary web script or HTML via the Metadata field in the "Create Share" form.
5.4
Moyen