CVE-2020-29565
An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and 18.5.x. There is a lack of validation of the "next" parameter, which would allow someone to supply a malicious URL in Horizon that can cause an automatic redirect to the provided malicious URL.
Published
2020-12-04T08:15:11.143
Last Modified
2024-11-21T05:24:12.760
Status
Modified
Source
[email protected]
Severity
CVSSv3.1: 6.1 (MEDIUM)
CVSSv2 Vector
AV:N/AC:M/Au:N/C:P/I:P/A:N
- Access Vector: NETWORK
- Access Complexity: MEDIUM
- Authentication: NONE
- Confidentiality Impact: PARTIAL
- Integrity Impact: PARTIAL
- Availability Impact: NONE
Exploitability Score
8.6
Impact Score
4.9
Weaknesses
Affected Vendors & Products
References
-
http://www.openwall.com/lists/oss-security/2020/12/08/2
Mailing List, Patch, Third Party Advisory
([email protected])
-
https://bugs.launchpad.net/horizon/+bug/1865026
Exploit, Issue Tracking, Third Party Advisory
([email protected])
-
https://review.opendev.org/c/openstack/horizon/+/758841/
Patch, Third Party Advisory
([email protected])
-
https://review.opendev.org/c/openstack/horizon/+/758843/
Patch, Third Party Advisory
([email protected])
-
https://security.openstack.org/ossa/OSSA-2020-008.html
Patch, Vendor Advisory
([email protected])
-
https://www.debian.org/security/2020/dsa-4820
Third Party Advisory
([email protected])
-
http://www.openwall.com/lists/oss-security/2020/12/08/2
Mailing List, Patch, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://bugs.launchpad.net/horizon/+bug/1865026
Exploit, Issue Tracking, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://review.opendev.org/c/openstack/horizon/+/758841/
Patch, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://review.opendev.org/c/openstack/horizon/+/758843/
Patch, Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://security.openstack.org/ossa/OSSA-2020-008.html
Patch, Vendor Advisory
(af854a3a-2127-422b-91ae-364da2661108)
-
https://www.debian.org/security/2020/dsa-4820
Third Party Advisory
(af854a3a-2127-422b-91ae-364da2661108)