CVE-2014-3473: XSS
Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in the Horizon Orchestration dashboard in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2, when used with Heat, allows remote Orchestration template owners or catalogs to inject arbitrary web script or HTML via a crafted template.
Other sources
Multiple XSS vulnerabilities were reported in OpenStack Horizon:
Jason Hullinger from Hewlett Packard, Craig Lorentzen from Cisco and Michael Xin from Rackspace reported 3 cross-site scripting (XSS) vulnerabilities in Horizon. A malicious Orchestration template owner or catalog may conduct an XSS attack once a corrupted template is used in the Orchestration/Stack section of Horizon (CVE-2014-3473). A malicious Horizon user may store an XSS attack by creating a network with a corrupted name (CVE-2014-3474). A malicious Horizon administrator may store an XSS attack by creating a user with a corrupted email address (CVE-2014-3475). Once executed in a legitimate context these attacks may result in potential asset stealing (horizon user/admin access credentials, VMs/Network configuration/management, tenants' confidential information, etc.). All Horizon setups are affected.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-3473?
CVE-2014-3473 is classified as a medium severity cross-site scripting vulnerability.
How do I fix CVE-2014-3473?
To fix CVE-2014-3473, upgrade your OpenStack Horizon to version 2013.2.4, 2014.1.2, or later.
Which versions of OpenStack Horizon are affected by CVE-2014-3473?
CVE-2014-3473 affects OpenStack Horizon versions before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2.
What is the impact of CVE-2014-3473?
CVE-2014-3473 allows remote orchestration template owners or catalogs to inject arbitrary web scripts into the Horizon dashboard.
What components are involved in CVE-2014-3473?
CVE-2014-3473 specifically involves the Orchestration/Stack section in the Horizon Orchestration dashboard.