CVE-2016-4428
published 2016-07-12CVE-2016-4428: Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject…
PriorityP424medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
EPSS
2.07%
79.3th percentile
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | horizon | < horizon 3:9.0.1-2 (bookworm) | horizon 3:9.0.1-2 (bookworm) |
| openstack | horizon | — | — |
| openstack | horizon | — | — |
| openstack | horizon | >= 0 < 3:9.0.1-2 | 3:9.0.1-2 |
| openstack | horizon | >= 0 < 3:9.0.1-2 | 3:9.0.1-2 |
| openstack | horizon | >= 0 < 3:9.0.1-2 | 3:9.0.1-2 |
| openstack | horizon | >= 0 < 3:9.0.1-2 | 3:9.0.1-2 |
| openstack | horizon | >= 0 < 8.0.2 | 8.0.2 |
| openstack | horizon | 8.0.0 – 8.0.1 | — |
| openstack | horizon | >= 9.0.0 < 9.1.0 | 9.1.0 |
| redhat | openstack | — | — |
| redhat | openstack | — | — |
| redhat | openstack | — | — |
| redhat | openstack | — | — |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
osv5.4MEDIUM
vendor_debian5.4MEDIUM
vendor_redhat5.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenStack Horizon vulnerability
vendor_ubuntu·2017-10-11
CVE-2016-4428 OpenStack Horizon vulnerability
Title: OpenStack Horizon vulnerability
Summary: OpenStack Horizon could be made to expose sensitive information over the
network.
Beth Lancaster and Brandon Sawyers discovered that OpenStack Horizon was
incorrect protected against cross-site scripting (XSS) attacks. A remote
authenticated user could use this issue to inject web script or HTML in
a dashboard form.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
python-django-horizon: XSS in client side template
vendor_redhat·2016-06-17·CVSS 5.4
CVE-2016-4428 [MEDIUM] CWE-79 python-django-horizon: XSS in client side template
python-django-horizon: XSS in client side template
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
A DOM-based, cross-site scripting vulnerability has been identified in the OpenStack dashboard, where user input was not filtered correctly. An authenticated dashboard user could exploit the flaw by injecting an AngularJS template into a dashboard form (for example, using an image's description), triggering the vulnerability when another user browsed the affected page. As a result, this flaw could result in user accounts being compromised (for example, user-access credentials being stolen).
Packa
Debian
CVE-2016-4428: horizon - Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 ...
vendor_debian·2016·CVSS 5.4
CVE-2016-4428 [MEDIUM] CVE-2016-4428: horizon - Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 ...
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
Scope: local
bookworm: resolved (fixed in 3:9.0.1-2)
bullseye: resolved (fixed in 3:9.0.1-2)
forky: resolved (fixed in 3:9.0.1-2)
sid: resolved (fixed in 3:9.0.1-2)
trixie: resolved (fixed in 3:9.0.1-2)
OSV
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
osv·2022-05-13
CVE-2016-4428 [MEDIUM] OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
GHSA
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
ghsa·2022-05-13
CVE-2016-4428 [MEDIUM] CWE-79 OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
OpenStack Dashboard (Horizon) Cross-site scripting (XSS) vulnerability
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
OSV
CVE-2016-4428: Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8
osv·2016-07-12·CVSS 5.4
CVE-2016-4428 [MEDIUM] CVE-2016-4428: Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8
Cross-site scripting (XSS) vulnerability in OpenStack Dashboard (Horizon) 8.0.1 and earlier and 9.0.0 through 9.0.1 allows remote authenticated users to inject arbitrary web script or HTML by injecting an AngularJS template in a dashboard form.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-4428 python-django-horizon: horizon: XSS in client side template [fedora-all]
bugzilla·2016-06-17·CVSS 5.4
CVE-2016-4428 [MEDIUM] CVE-2016-4428 python-django-horizon: horizon: XSS in client side template [fedora-all]
CVE-2016-4428 python-django-horizon: horizon: XSS in client side template [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported ver
Bugzilla
CVE-2016-4428 python-django-horizon: XSS in client side template
bugzilla·2016-06-08·CVSS 5.4
CVE-2016-4428 [MEDIUM] CVE-2016-4428 python-django-horizon: XSS in client side template
CVE-2016-4428 python-django-horizon: XSS in client side template
Beth Lancaster and Brandon Sawyers from Virginia Tech reported a
vulnerability in Horizon. By injecting Angularjs template in dashboard
forms, such as image's description, an authenticated user may trigger a
cross-site-scripting vulnerability when another user browses the
affected pages. It may result in potential assets theft like user access
credentials. All Horizon setups are affected.
Discussion:
Acknowledgments:
Name: the OpenStack project
Upstream: Beth Lancaster (Virginia Tech), Brandon Sawyers (Virginia Tech)
---
Created python-django-horizon tracking bugs for this issue:
Affects: fedora-all [bug 1347874]
---
Upstream advisory - OSSA-2016-010:
http://seclists.org/oss-sec/2016/q2/565
Upstream bug:
https://b
arXiv
A Risk Manager for Intrusion Tolerant Systems: Enhancing HAL 9000 with New Scoring and Data Sources
arxiv_fulltext·2025-08-18
A Risk Manager for Intrusion Tolerant Systems: Enhancing HAL 9000 with New Scoring and Data Sources
A Risk Manager for Intrusion Tolerant Systems: Enhancing HAL 9000 with New Scoring and Data Sources
[1,2]Tadeu Freitas
[1]Carlos Novo
[1]Inês Dutra
[1]João Soares
[1,2]Manuel E. Correia
[3]Benham Shariati
[4]Rolando Martins
FREITAS et al.
A Risk Manager for Intrusion Tolerant Systems: Enhancing HAL 9000 with New Scoring and Data Sources
[1]Department of Computer Science, Faculty of Sciences of University of Porto, Porto, Portugal
[2]Centre Advanced Computing Systems, Institute for Systems and Computer Engineering, Technology and Science, Porto, Portugal
[3]UMBC, University of Maryland, Baltimore County,Baltimore, USA
[4]SafeHelm, lda, Porto, Portugal
Corresponding author Tadeu Freitas. [email protected]
[Abstract]Intrusion Tolerant Systems (ITSs) have become increasingly
arXiv
HAL 9000: a Risk Manager for ITSs
arxiv_fulltext·2025-03-21
HAL 9000: a Risk Manager for ITSs
HAL 9000: a Risk Manager for ITSs
This work is financed by National Funds through the Portuguese funding agency, FCT - Fundação para a Ciência e a Tecnologia, within project UIDB/50014/2020.
DOI 10.54499/UIDB/50014/2020 https://doi.org/10.54499/uidb/50014/2020
This work was funded by 2021.08532.BD (FCT), and by 2021.04529.BD (FCT).
Tadeu Freitas12, Carlos Novo1, João Soares12, Inês Dutra13,
Manuel E. Correia12, Behnam Shariati4, Rolando Martins15
1Faculty of Sciences, University of Porto, Portugal
2CRACS/INESC-TEC, Portugal
3CINTESIS@RISE, Portugal
4University of Maryland, Baltimore County, USA
5SafeHelm, lda, Porto, Portugal
\tadeufreitas, joao.soares, mdcorrei, carlosnovo, ines\@fc.up.pt,
[email protected], [email protected]
## Abstract
HAL 9000 is an Intrusion Tolerant Systems
http://www.debian.org/security/2016/dsa-3617http://www.openwall.com/lists/oss-security/2016/06/17/4https://access.redhat.com/errata/RHSA-2016:1268https://access.redhat.com/errata/RHSA-2016:1269https://access.redhat.com/errata/RHSA-2016:1270https://access.redhat.com/errata/RHSA-2016:1271https://access.redhat.com/errata/RHSA-2016:1272https://bugs.launchpad.net/horizon/+bug/1567673https://review.openstack.org/329996https://review.openstack.org/329997https://review.openstack.org/329998https://security.openstack.org/ossa/OSSA-2016-010.htmlhttp://www.debian.org/security/2016/dsa-3617http://www.openwall.com/lists/oss-security/2016/06/17/4https://access.redhat.com/errata/RHSA-2016:1268https://access.redhat.com/errata/RHSA-2016:1269https://access.redhat.com/errata/RHSA-2016:1270https://access.redhat.com/errata/RHSA-2016:1271https://access.redhat.com/errata/RHSA-2016:1272https://bugs.launchpad.net/horizon/+bug/1567673https://review.openstack.org/329996https://review.openstack.org/329997https://review.openstack.org/329998https://security.openstack.org/ossa/OSSA-2016-010.html
2016-07-12
Published