4.3
CVSSv2

CVE-2020-10743

Published: 02/06/2021 Updated: 12/02/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

It exists that OpenShift Container Platform's (OCP) distribution of Kibana could open in an iframe, which made it possible to intercept and manipulate requests. This flaw allows an malicious user to trick a user into performing arbitrary actions in OCP's distribution of Kibana, such as clickjacking.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

elastic kibana -

redhat openshift container platform 4.6.1

redhat openshift container platform 3.11.286

Vendor Advisories

Synopsis Moderate: OpenShift Container Platform 311286 security update Type/Severity Security Advisory: Moderate Topic An update for logging-kibana5-container and openshift-enterprise-registry-container is now available for Red Hat OpenShift Container Platform 311Red Hat Product Security has rated this ...
Synopsis Moderate: OpenShift Container Platform 461 image security update Type/Severity Security Advisory: Moderate Topic An update is now available for Red Hat OpenShift Container Platform 46Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability S ...