CVE-2014-3592: XSS
Published Nov 13, 2019
·Updated
OpenShift Origin: Improperly validated team names could allow stored XSS attacks
Affected Software
1 affected component
redhat OpenShift Origin<=2014-08-13
Event History
Nov 13, 2019
CVE Published
via MITRE·03:33 PM
Data Sourced
via MITRE·03:33 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2014-3592?
CVE-2014-3592 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2014-3592?
To fix CVE-2014-3592, upgrade to a version of Red Hat OpenShift Origin later than 2014-08-13 that addresses the vulnerability.
3
What type of vulnerability is CVE-2014-3592?
CVE-2014-3592 is an example of stored cross-site scripting (XSS) due to improperly validated team names.
4
Which versions of Red Hat OpenShift Origin are affected by CVE-2014-3592?
Red Hat OpenShift Origin versions up to and including 2014-08-13 are affected by CVE-2014-3592.
5
What impact could CVE-2014-3592 have on users?
CVE-2014-3592 could allow attackers to execute malicious scripts in the context of users' browsers, leading to potential data theft.