CVE-2014-3594
published 2014-08-22CVE-2014-3594: Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno…
PriorityP415low3.5CVSS 2.0
AVNACMAuSCNIPAN
EPSS
2.05%
79.1th percentile
Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-3 allows remote administrators to inject arbitrary web script or HTML via a new host aggregate name.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | horizon | < horizon 2014.1.2-3 (bookworm) | horizon 2014.1.2-3 (bookworm) |
| openstack | horizon | — | — |
| openstack | horizon | — | — |
| openstack | horizon | >= 0 < 2014.1.2-3 | 2014.1.2-3 |
| openstack | horizon | >= 0 < 2014.1.2-3 | 2014.1.2-3 |
| openstack | horizon | >= 0 < 2014.1.2-3 | 2014.1.2-3 |
| openstack | horizon | >= 0 < 2014.1.2-3 | 2014.1.2-3 |
| openstack | horizon | >= 0 < 8.0.0a0 | 8.0.0a0 |
| openstack | horizon | >= 0 < 1:2014.1.2-0ubuntu1.1 | 1:2014.1.2-0ubuntu1.1 |
| openstack | horizon | >= 2013.2 < 2013.2.4 | 2013.2.4 |
| openstack | horizon | >= 2014.1 < 2014.1.2 | 2014.1.2 |
| opensuse | opensuse | — | — |
CVSS provenance
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
osv4.3MEDIUM
vendor_ubuntu4.3MEDIUM
vendor_debian3.5LOW
vendor_redhat3.5LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenStack Horizon vulnerabilities
vendor_ubuntu·2014-08-21·CVSS 4.3
CVE-2014-3473 [MEDIUM] OpenStack Horizon vulnerabilities
Title: OpenStack Horizon vulnerabilities
Summary: Several security issues were fixed in OpenStack Horizon.
Jason Hullinger discovered that OpenStack Horizon did not properly perform
input sanitization on Heat templates. If a user were tricked into using a
specially crafted Heat template, an attacker could conduct cross-site
scripting attacks. With cross-site scripting vulnerabilities, if a user
were tricked into viewing server output during a crafted server request, a
remote attacker could exploit this to modify the contents, or steal
confidential data, within the same domain. (CVE-2014-3473)
Craig Lorentzen discovered that OpenStack Horizon did not properly perform
input sanitization when creating networks. If a user were tricked into
launching an image using the crafted network name,
Red Hat
openstack-horizon: persistent XSS in Horizon Host Aggregates interface
vendor_redhat·2014-08-19·CVSS 3.5
CVE-2014-3594 [LOW] CWE-79 openstack-horizon: persistent XSS in Horizon Host Aggregates interface
openstack-horizon: persistent XSS in Horizon Host Aggregates interface
Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-3 allows remote administrators to inject arbitrary web script or HTML via a new host aggregate name.
A persistent cross-site scripting (XSS) flaw was found in the horizon host aggregate interface. A user with sufficient privileges to add a host aggregate could potentially use this flaw to capture the credentials of another user.
Package: python-django-horizon (Red Hat OpenStack Platform 3) - Will not fix
Debian
CVE-2014-3594: horizon - Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in Ope...
vendor_debian·2014·CVSS 3.5
CVE-2014-3594 [LOW] CVE-2014-3594: horizon - Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in Ope...
Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-3 allows remote administrators to inject arbitrary web script or HTML via a new host aggregate name.
Scope: local
bookworm: resolved (fixed in 2014.1.2-3)
bullseye: resolved (fixed in 2014.1.2-3)
forky: resolved (fixed in 2014.1.2-3)
sid: resolved (fixed in 2014.1.2-3)
trixie: resolved (fixed in 2014.1.2-3)
OSV
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability in the Host Aggregates interface
osv·2022-05-13
CVE-2014-3594 [LOW] OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability in the Host Aggregates interface
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability in the Host Aggregates interface
Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-3 allows remote administrators to inject arbitrary web script or HTML via a new host aggregate name.
GHSA
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability in the Host Aggregates interface
ghsa·2022-05-13
CVE-2014-3594 [LOW] CWE-79 OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability in the Host Aggregates interface
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability in the Host Aggregates interface
Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-3 allows remote administrators to inject arbitrary web script or HTML via a new host aggregate name.
OSV
CVE-2014-3594: Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013
osv·2014-08-22·CVSS 3.5
CVE-2014-3594 [LOW] CVE-2014-3594: Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013
Cross-site scripting (XSS) vulnerability in the Host Aggregates interface in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-3 allows remote administrators to inject arbitrary web script or HTML via a new host aggregate name.
OSV
horizon vulnerabilities
osv·2014-08-21·CVSS 4.3
[MEDIUM] horizon vulnerabilities
horizon vulnerabilities
Jason Hullinger discovered that OpenStack Horizon did not properly perform
input sanitization on Heat templates. If a user were tricked into using a
specially crafted Heat template, an attacker could conduct cross-site
scripting attacks. With cross-site scripting vulnerabilities, if a user
were tricked into viewing server output during a crafted server request, a
remote attacker could exploit this to modify the contents, or steal
confidential data, within the same domain. (CVE-2014-3473)
Craig Lorentzen discovered that OpenStack Horizon did not properly perform
input sanitization when creating networks. If a user were tricked into
launching an image using the crafted network name, an attacker could
conduct cross-site scripting attacks. (CVE-2014-3474)
Michael Xin
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-3594 python-django-horizon: openstack-horizon: persistent XSS in Horizon Host Aggregates interface [epel-6]
bugzilla·2014-08-20·CVSS 3.5
CVE-2014-3594 [LOW] CVE-2014-3594 python-django-horizon: openstack-horizon: persistent XSS in Horizon Host Aggregates interface [epel-6]
CVE-2014-3594 python-django-horizon: openstack-horizon: persistent XSS in Horizon Host Aggregates interface [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
epel-6 track
Bugzilla
CVE-2014-3594 python-django-horizon: openstack-horizon: persistent XSS in Horizon Host Aggregates interface [fedora-all]
bugzilla·2014-08-20·CVSS 3.5
CVE-2014-3594 [LOW] CVE-2014-3594 python-django-horizon: openstack-horizon: persistent XSS in Horizon Host Aggregates interface [fedora-all]
CVE-2014-3594 python-django-horizon: openstack-horizon: persistent XSS in Horizon Host Aggregates interface [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this is
Bugzilla
CVE-2014-3594 openstack-horizon: persistent XSS in Horizon Host Aggregates interface
bugzilla·2014-08-13·CVSS 3.5
CVE-2014-3594 [LOW] CVE-2014-3594 openstack-horizon: persistent XSS in Horizon Host Aggregates interface
CVE-2014-3594 openstack-horizon: persistent XSS in Horizon Host Aggregates interface
Title: Persistent XSS in Horizon Host Aggregates interface
Reporters: Dennis Felsch and Mario Heiderich (Ruhr-University Bochum)
Products: Horizon
Versions: up to 2013.2.3, and 2014.1 versions up to 2014.1.2
Description:
Dennis Felsch and Mario Heiderich from the Horst Görtz Institute for
IT-Security, Ruhr-University Bochum reported a persistent XSS in Horizon. A
malicious administrator may conduct a persistent XSS attack by registering
a malicious host aggregate in Horizon Host Aggregate interface. Once
executed in a legitimate context this attack may reveal another admin
token, potentially resulting in a lateral privilege escalation. All Horizon
setups are affected.
Acknowledgements:
Red Hat would l
http://lists.opensuse.org/opensuse-updates/2015-01/msg00040.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1335.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1336.htmlhttp://seclists.org/oss-sec/2014/q3/413http://www.securityfocus.com/bid/69291https://bugs.launchpad.net/horizon/+bug/1349491https://exchange.xforce.ibmcloud.com/vulnerabilities/95378https://review.openstack.org/#/c/115310https://review.openstack.org/#/c/115311https://review.openstack.org/#/c/115313/http://lists.opensuse.org/opensuse-updates/2015-01/msg00040.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1335.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1336.htmlhttp://seclists.org/oss-sec/2014/q3/413http://www.securityfocus.com/bid/69291https://bugs.launchpad.net/horizon/+bug/1349491https://exchange.xforce.ibmcloud.com/vulnerabilities/95378https://review.openstack.org/#/c/115310https://review.openstack.org/#/c/115311https://review.openstack.org/#/c/115313/
2014-08-22
Published