312
VMScore

CVE-2019-3889

Published: 11/07/2019 Updated: 01/03/2023
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

A reflected XSS vulnerability exists in authorization flow of OpenShift Container Platform versions: openshift-online-3, openshift-enterprise-3.4 up to and including 3.7 and openshift-enterprise-3.9 up to and including 3.11. An attacker could use this flaw to steal authorization data by getting them to click on a malicious link.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat openshift container platform

redhat openshift container platform 4.1

redhat openshift container platform 4.2

Vendor Advisories

Synopsis Moderate: OpenShift Container Platform 311 security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 311188 is now available withupdates to packages and images that fix several bugs and add enhancementsRed Hat Product Security has rated this up ...
Synopsis Moderate: OpenShift Container Platform 4122 openshift-enterprise-hypershift-container security update Type/Severity Security Advisory: Moderate Topic An update for openshift-enterprise-hypershift-container is now available for Red Hat OpenShift Container Platform 41Red Hat Product Security has ...
Synopsis Moderate: OpenShift Container Platform 424 oauth-server-container security update Type/Severity Security Advisory: Moderate Topic An update for oauth-server-container is now available for Red Hat OpenShift Container Platform 42Red Hat Product Security has rated this update as having a security ...