Oval Definition:oval:org.opensuse.security:def:20153988
Revision Date:2020-11-28Version:1
Title:CVE-2015-3988
Description:

Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2015.1.0 allow remote authenticated users to inject arbitrary web script or HTML via the metadata to a (1) Glance image, (2) Nova flavor or (3) Host Aggregate.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-3988
SUSE-SU-2015:2064-1
Platform(s):SUSE OpenStack Cloud 5
SUSE OpenStack Cloud 6
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • openstack-dashboard-8.0.2~a0~dev7-2 is installed
  • OR python-horizon-8.0.2~a0~dev7-2 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 5 is installed
  • AND Package Information
  • crowbar-barclamp-nova_dashboard-1.9+git.1443622531.b2b2939-9 is installed
  • OR openstack-dashboard-2014.2.4~a0~dev12-13 is installed
  • OR python-django_openstack_auth-1.1.7-11 is installed
  • OR python-horizon-2014.2.4~a0~dev12-13 is installed
  • BACK