4.3
CVSSv3

CVE-2022-3962

Published: 23/09/2023 Updated: 07/11/2023
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A content spoofing vulnerability was found in Kiali. It exists that Kiali does not implement error handling when the page or endpoint being accessed cannot be found. This issue allows an malicious user to perform arbitrary text injection when an error response is retrieved from the URL being accessed.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

kiali kiali -

redhat openshift_service_mesh 2.3.1

Vendor Advisories

Synopsis Important: Red Hat OpenShift Service Mesh 231 Containers security update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Service Mesh 231 ContainersRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) base score, which gives a deta ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...