CVE-2015-3219
published 2015-08-20CVE-2015-3219: Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014.2 before 2014.2.4 and 2015.1.x before…
PriorityP421medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
3.20%
86.8th percentile
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014.2 before 2014.2.4 and 2015.1.x before 2015.1.1 allows remote attackers to inject arbitrary web script or HTML via the description parameter in a heat template, which is not properly handled in the help_text attribute in the Field class.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | horizon | < horizon 2015.1.0+2015.06.09.git15.e63af6c598-1 (bookworm) | horizon 2015.1.0+2015.06.09.git15.e63af6c598-1 (bookworm) |
| openstack | horizon | — | — |
| openstack | horizon | — | — |
| openstack | horizon | — | — |
| openstack | horizon | — | — |
| openstack | horizon | — | — |
| openstack | horizon | >= 0 < 2015.1.0+2015.06.09.git15.e63af6c598-1 | 2015.1.0+2015.06.09.git15.e63af6c598-1 |
| openstack | horizon | >= 0 < 2015.1.0+2015.06.09.git15.e63af6c598-1 | 2015.1.0+2015.06.09.git15.e63af6c598-1 |
| openstack | horizon | >= 0 < 2015.1.0+2015.06.09.git15.e63af6c598-1 | 2015.1.0+2015.06.09.git15.e63af6c598-1 |
| openstack | horizon | >= 0 < 2015.1.0+2015.06.09.git15.e63af6c598-1 | 2015.1.0+2015.06.09.git15.e63af6c598-1 |
| openstack | horizon | >= 0 < 8.0.0a0 | 8.0.0a0 |
| oracle | solaris | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv4.3MEDIUM
vendor_debian4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
ghsa·2022-05-17
CVE-2015-3219 [MEDIUM] CWE-79 OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014.2 before 2014.2.4 and 2015.1.x before 2015.1.1 allows remote attackers to inject arbitrary web script or HTML via the description parameter in a heat template, which is not properly handled in the help_text attribute in the Field class.
OSV
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
osv·2022-05-17
CVE-2015-3219 [MEDIUM] OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014.2 before 2014.2.4 and 2015.1.x before 2015.1.1 allows remote attackers to inject arbitrary web script or HTML via the description parameter in a heat template, which is not properly handled in the help_text attribute in the Field class.
OSV
CVE-2015-3219: Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014
osv·2015-08-20·CVSS 4.3
CVE-2015-3219 [MEDIUM] CVE-2015-3219: Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014.2 before 2014.2.4 and 2015.1.x before 2015.1.1 allows remote attackers to inject arbitrary web script or HTML via the description parameter in a heat template, which is not properly handled in the help_text attribute in the Field class.
Red Hat
python-django-horizon: XSS in Heat stack creation
vendor_redhat·2015-06-09·CVSS 4.3
CVE-2015-3219 [MEDIUM] CWE-79 python-django-horizon: XSS in Heat stack creation
python-django-horizon: XSS in Heat stack creation
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014.2 before 2014.2.4 and 2015.1.x before 2015.1.1 allows remote attackers to inject arbitrary web script or HTML via the description parameter in a heat template, which is not properly handled in the help_text attribute in the Field class.
A cross-site scripting (XSS) flaw was found in the Horizon orchestration dashboard. An attacker able to trick a Horizon user into using a malicious template during the stack creation could use this flaw to perform an XSS attack on that user.
Package: python-django-horizon (Red Hat Enterprise Linux OpenStack Platform 5 (Icehouse)) - Not affected
Package: python-django-horizon (Red Hat Enterpri
Debian
CVE-2015-3219: horizon - Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in O...
vendor_debian·2015·CVSS 4.3
CVE-2015-3219 [MEDIUM] CVE-2015-3219: horizon - Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in O...
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in OpenStack Dashboard (Horizon) 2014.2 before 2014.2.4 and 2015.1.x before 2015.1.1 allows remote attackers to inject arbitrary web script or HTML via the description parameter in a heat template, which is not properly handled in the help_text attribute in the Field class.
Scope: local
bookworm: resolved (fixed in 2015.1.0+2015.06.09.git15.e63af6c598-1)
bullseye: resolved (fixed in 2015.1.0+2015.06.09.git15.e63af6c598-1)
forky: resolved (fixed in 2015.1.0+2015.06.09.git15.e63af6c598-1)
sid: resolved (fixed in 2015.1.0+2015.06.09.git15.e63af6c598-1)
trixie: resolved (fixed in 2015.1.0+2015.06.09.git15.e63af6c598-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-3219 python-django-horizon: XSS in Horizon Heat stack creation [fedora-all]
bugzilla·2015-06-11·CVSS 4.3
CVE-2015-3219 [MEDIUM] CVE-2015-3219 python-django-horizon: XSS in Horizon Heat stack creation [fedora-all]
CVE-2015-3219 python-django-horizon: XSS in Horizon Heat stack creation [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versi
Bugzilla
CVE-2015-3219 python-django-horizon: XSS in Heat stack creation
bugzilla·2015-06-05·CVSS 4.3
CVE-2015-3219 [MEDIUM] CVE-2015-3219 python-django-horizon: XSS in Heat stack creation
CVE-2015-3219 python-django-horizon: XSS in Heat stack creation
By tricking a Horizon user into using a malicious template in the Orchestration/Stack section of Horizon, a remote attacker may trigger a cross-site-scripting (XSS) vulnerability during the stack creation. It may result in potential assets theft like user access credentials. Only setups exposing the orchestration dashboard in Horizon are affected.
Acknowledgement:
Red Hat would like to thank the OpenStack Project for reporting this issue. Upstream acknowledges Nikita Konovalov from Mirantis as the original reporter.
Discussion:
Created attachment 1035037
cve-2015-3219-master-liberty.patch
---
Created attachment 1035038
cve-2015-3219-stable-juno.patch
---
Created attachment 1035039
cve-2015-3219-stable-kilo.patch
---
http://lists.openstack.org/pipermail/openstack-announce/2015-June/000361.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1679.htmlhttp://www.debian.org/security/2016/dsa-3617http://www.openwall.com/lists/oss-security/2015/06/09/7http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.htmlhttp://www.securityfocus.com/bid/75109https://bugs.launchpad.net/horizon/+bug/1453074http://lists.openstack.org/pipermail/openstack-announce/2015-June/000361.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1679.htmlhttp://www.debian.org/security/2016/dsa-3617http://www.openwall.com/lists/oss-security/2015/06/09/7http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.htmlhttp://www.securityfocus.com/bid/75109https://bugs.launchpad.net/horizon/+bug/1453074
2015-08-20
Published