A flaw was found in the Ceph Object Gateway, where it supports request sent by an anonymous user in Amazon S3. This flaw could lead to potential XSS attacks due to the lack of proper neutralization of untrusted input.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
linuxfoundation ceph |
||
redhat ceph storage 3.0 |
||
redhat openshift container platform 4.2 |
||
redhat ceph storage 4.0 |
||
fedoraproject fedora 31 |
||
canonical ubuntu linux 18.04 |
||
canonical ubuntu linux 16.04 |
||
debian debian linux 9.0 |