REDHAT-BUG-1590538: Medium severity red hat cloudforms management engine vulnerability
Published Jun 12, 2018
·Updated
A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting in CloudForms 5.9.3.1 build due to improper sanitization of user input in Name field.
Affected Software
1 affected component
Red Hat CloudForms
Event History
Jun 12, 2018
Data Sourced
via Red Hat·07:46 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1590538?
The severity of REDHAT-BUG-1590538 is classified as medium due to the stored cross-site scripting vulnerability.
2
How do I fix REDHAT-BUG-1590538?
To fix REDHAT-BUG-1590538, ensure that the user input in the Name field is properly sanitized and updated to the latest patched version of CloudForms.
3
Which versions of CloudForms are affected by REDHAT-BUG-1590538?
CloudForms version 5.9.3.1 is specifically affected by REDHAT-BUG-1590538.
4
What type of vulnerability is REDHAT-BUG-1590538?
REDHAT-BUG-1590538 is a stored cross-site scripting (XSS) vulnerability.
5
Is user input validation important in the context of REDHAT-BUG-1590538?
Yes, user input validation is crucial to prevent vulnerabilities like the one described in REDHAT-BUG-1590538.