cbcvebase.
CVE-2020-29565
published 2020-12-04

CVE-2020-29565: An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and 18.5.x. There is a lack of validation…

PriorityP428medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
EPSS
1.40%
69.6th percentile
An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and 18.5.x. There is a lack of validation of the "next" parameter, which would allow someone to supply a malicious URL in Horizon that can cause an automatic redirect to the provided malicious URL.

Affected

14 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debianhorizon< horizon 3:18.6.1-1 (bookworm)horizon 3:18.6.1-1 (bookworm)
openstackhorizon>= 0 < 3:18.6.1-13:18.6.1-1
openstackhorizon>= 0 < 3:18.6.1-13:18.6.1-1
openstackhorizon>= 0 < 3:18.6.1-13:18.6.1-1
openstackhorizon>= 0 < 3:18.6.1-13:18.6.1-1
openstackhorizon>= 0 < 15.3.215.3.2
openstackhorizon>= 15.3.0 < 15.3.215.3.2
openstackhorizon>= 16.0.0 < 16.2.116.2.1
openstackhorizon>= 16.0.0 < 16.2.116.2.1
openstackhorizon>= 17.0.0 < 18.3.318.3.3
openstackhorizon>= 17.0.0 < 18.3.318.3.3
openstackhorizon>= 18.4.0 < 18.6.018.6.0
openstackhorizon18.4.0 – 18.5.0

CVSS provenance

nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
osv6.1MEDIUM
vendor_debian6.1MEDIUM
vendor_redhat6.1MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.