Total vulnerabilities in the database
An HTML injection/reflected Cross-site scripting (XSS) vulnerability was found in the ovirt-engine. A parameter "error_description" fails to sanitize the entry, allowing the vulnerability to trigger on the Windows Service Accounts home pages.
Software | From | Fixed in |
---|---|---|
ovirt / ovirt-engine | 4.3.0 | 4.3.0.x |