Oval Definition:oval:org.opensuse.security:def:20143475
Revision Date:2020-11-28Version:1
Title:CVE-2014-3475
Description:

Cross-site scripting (XSS) vulnerability in the Users panel (admin/users/) in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows remote administrators to inject arbitrary web script or HTML via a user email address, a different vulnerability than CVE-2014-8578.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-3475
openSUSE-SU-2015:0078-1
SUSE-SU-2014:1111-1
SUSE-SU-2014:1266-1
Platform(s):openSUSE 13.1
SUSE OpenStack Cloud 6
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • openstack-dashboard-8.0.2~a0~dev7-2 is installed
  • OR python-horizon-8.0.2~a0~dev7-2 is installed
  • Definition Synopsis
  • openSUSE 13.1 is installed
  • AND Package Information
  • openstack-dashboard-2013.2.5.dev2.g9ee7273-4.1 is installed
  • OR openstack-dashboard-branding-upstream-2013.2.5.dev2.g9ee7273-4.1 is installed
  • OR openstack-dashboard-test-2013.2.5.dev2.g9ee7273-4.1 is installed
  • OR python-django_openstack_auth-1.1.3-4.1 is installed
  • OR python-horizon-2013.2.5.dev2.g9ee7273-4.1 is installed
  • OR python-horizon-branding-upstream-2013.2.5.dev2.g9ee7273-4.1 is installed
  • BACK