Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and previous versions and 9.0.0 up to and including 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
openstack horizon 9.0.0 |
||
openstack horizon 9.0.1 |
||
openstack horizon |
||
redhat openstack 7.0 |
||
redhat openstack 6.0 |
||
redhat openstack 8 |
||
redhat openstack 5.0 |
||
debian debian linux 8.0 |
||
debian debian linux 9.0 |