mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-08-04 08:44:25 +00:00
117 lines
4.0 KiB
JSON
117 lines
4.0 KiB
JSON
{
|
|
"CVE_data_meta": {
|
|
"ASSIGNER": "secalert@redhat.com",
|
|
"ID": "CVE-2016-4428",
|
|
"STATE": "PUBLIC"
|
|
},
|
|
"affects": {
|
|
"vendor": {
|
|
"vendor_data": [
|
|
{
|
|
"product": {
|
|
"product_data": [
|
|
{
|
|
"product_name": "n/a",
|
|
"version": {
|
|
"version_data": [
|
|
{
|
|
"version_value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name": "n/a"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format": "MITRE",
|
|
"data_type": "CVE",
|
|
"data_version": "4.0",
|
|
"description": {
|
|
"description_data": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form."
|
|
}
|
|
]
|
|
},
|
|
"problemtype": {
|
|
"problemtype_data": [
|
|
{
|
|
"description": [
|
|
{
|
|
"lang": "eng",
|
|
"value": "n/a"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references": {
|
|
"reference_data": [
|
|
{
|
|
"name": "RHSA-2016:1268",
|
|
"refsource": "REDHAT",
|
|
"url": "https://access.redhat.com/errata/RHSA-2016:1268"
|
|
},
|
|
{
|
|
"name": "RHSA-2016:1270",
|
|
"refsource": "REDHAT",
|
|
"url": "https://access.redhat.com/errata/RHSA-2016:1270"
|
|
},
|
|
{
|
|
"name": "DSA-3617",
|
|
"refsource": "DEBIAN",
|
|
"url": "http://www.debian.org/security/2016/dsa-3617"
|
|
},
|
|
{
|
|
"name": "RHSA-2016:1272",
|
|
"refsource": "REDHAT",
|
|
"url": "https://access.redhat.com/errata/RHSA-2016:1272"
|
|
},
|
|
{
|
|
"name": "https://security.openstack.org/ossa/OSSA-2016-010.html",
|
|
"refsource": "CONFIRM",
|
|
"url": "https://security.openstack.org/ossa/OSSA-2016-010.html"
|
|
},
|
|
{
|
|
"name": "https://review.openstack.org/329997",
|
|
"refsource": "CONFIRM",
|
|
"url": "https://review.openstack.org/329997"
|
|
},
|
|
{
|
|
"name": "https://bugs.launchpad.net/horizon/+bug/1567673",
|
|
"refsource": "CONFIRM",
|
|
"url": "https://bugs.launchpad.net/horizon/+bug/1567673"
|
|
},
|
|
{
|
|
"name": "RHSA-2016:1269",
|
|
"refsource": "REDHAT",
|
|
"url": "https://access.redhat.com/errata/RHSA-2016:1269"
|
|
},
|
|
{
|
|
"name": "[oss-security] 20160617 [OSSA-2016-010] XSS in Horizon client side template (CVE-2016-4428)",
|
|
"refsource": "MLIST",
|
|
"url": "http://www.openwall.com/lists/oss-security/2016/06/17/4"
|
|
},
|
|
{
|
|
"name": "RHSA-2016:1271",
|
|
"refsource": "REDHAT",
|
|
"url": "https://access.redhat.com/errata/RHSA-2016:1271"
|
|
},
|
|
{
|
|
"name": "https://review.openstack.org/329998",
|
|
"refsource": "CONFIRM",
|
|
"url": "https://review.openstack.org/329998"
|
|
},
|
|
{
|
|
"name": "https://review.openstack.org/329996",
|
|
"refsource": "CONFIRM",
|
|
"url": "https://review.openstack.org/329996"
|
|
}
|
|
]
|
|
}
|
|
} |