REDHAT-BUG-1129774: XSS
Title: Persistent XSS in Horizon Host Aggregates interface Reporters: Dennis Felsch and Mario Heiderich (Ruhr-University Bochum) Products: Horizon Versions: up to 2013.2.3, and 2014.1 versions up to 2014.1.2
Description: Dennis Felsch and Mario Heiderich from the Horst Görtz Institute for IT-Security, Ruhr-University Bochum reported a persistent XSS in Horizon. A malicious administrator may conduct a persistent XSS attack by registering a malicious host aggregate in Horizon Host Aggregate interface. Once executed in a legitimate context this attack may reveal another admin token, potentially resulting in a lateral privilege escalation. All Horizon setups are affected.
Acknowledgements:
Red Hat would like to thank the OpenStack project for reporting this issue. Upstream acknowledges Dennis Felsch and Mario Heiderich from the Horst Görtz Institute for IT-Security, Ruhr-University Bochum as the original reporters.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1129774?
REDHAT-BUG-1129774 is classified as a persistent cross-site scripting (XSS) vulnerability.
How do I fix REDHAT-BUG-1129774?
To fix REDHAT-BUG-1129774, upgrade OpenStack Horizon to versions 2014.1.3 or later.
What versions of OpenStack Horizon are affected by REDHAT-BUG-1129774?
OpenStack Horizon versions up to 2013.2.3 and 2014.1 versions up to 2014.1.2 are affected by REDHAT-BUG-1129774.
What products are impacted by REDHAT-BUG-1129774?
The vulnerability REDHAT-BUG-1129774 impacts the OpenStack Horizon product.
Who reported REDHAT-BUG-1129774?
REDHAT-BUG-1129774 was reported by Dennis Felsch and Mario Heiderich from Ruhr-University Bochum.