Oval Definition:
oval:org.opensuse.security:def:20136858
Revision Date
:
2017-03-01
Version
:
1
Title
:
CVE-2013-6858
Description
:
Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2013.2 and earlier allow local users to inject arbitrary web script or HTML via an instance name to (1) "Volumes" or (2) "Network Topology" page.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2013-6858
Platform(s)
:
openSUSE 13.1
Product(s)
:
Definition Synopsis
openSUSE 13.1 is installed
AND
Package Information
openstack-dashboard-2013.2.5.dev2.g9ee7273-4.1 is installed
OR
openstack-dashboard-branding-upstream-2013.2.5.dev2.g9ee7273-4.1 is installed
OR
openstack-dashboard-test-2013.2.5.dev2.g9ee7273-4.1 is installed
OR
python-django_openstack_auth-1.1.3-4.1 is installed
OR
python-horizon-2013.2.5.dev2.g9ee7273-4.1 is installed
OR
python-horizon-branding-upstream-2013.2.5.dev2.g9ee7273-4.1 is installed
BACK