REDHAT-BUG-1315398: XSS
Published Mar 7, 2016
·Updated
Jan Hutař of Red Hat reports a XSS vulnerability in the handling of the users first and last name within the Web UI.
External reference: spacewalk git dd418384171473c3e31386a1b4792f8c555dc744 spacewalk git f3792c79c1c251a49cc4e382be8591636326a794
Affected Software
1 affected component
Red Hat Spacewalk
Event History
Mar 7, 2016
Data Sourced
via Red Hat·04:11 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1315398?
The severity of REDHAT-BUG-1315398 is classified as medium with a score of 4.
2
What type of vulnerability is REDHAT-BUG-1315398?
REDHAT-BUG-1315398 is an XSS (Cross-Site Scripting) vulnerability.
3
How do I fix REDHAT-BUG-1315398?
To fix REDHAT-BUG-1315398, you should apply the latest patches and updates provided by Red Hat for Spacewalk.
4
What impact does REDHAT-BUG-1315398 have?
The impact of REDHAT-BUG-1315398 is that it may allow an attacker to execute arbitrary scripts in the context of the user's browser session.
5
Is REDHAT-BUG-1315398 specific to a version of Red Hat Spacewalk?
Yes, REDHAT-BUG-1315398 pertains specifically to Red Hat Spacewalk software.