|
Identifier
|
Related Record |
Severity
|
Date Published
|
Description | Versions Affected |
|---|---|---|---|---|---|
| CVE-2020-35497 | BDSA-2020-3857 | Medium | Dec 21, 2020 | A flaw was found in ovirt-engine 4.4.3 and earlier allowing an authenticated user to read other users' personal information, including name, email and more... |
4.3.3.1, 4.3.3, 4.3.2.1, 4.3.2, 4.2.8.5, 4.3.1.1, 4.2.8.4, 4.3.1, 4.3.0.4, 4.3.0.3
|
| CVE-2020-14333 | BDSA-2020-2118 | Medium | Aug 18, 2020 | A flaw was found in Ovirt Engine's web interface in ovirt 4.4 and earlier, where it did not filter user-controllable parameters completely, resulting i more... |
4.3.3.1, 4.3.3, 4.3.2.1, 4.3.2, 4.2.8.5, 4.3.1.1, 4.2.8.4, 4.3.1, 4.3.0.4, 4.3.0.3
|
| CVE-2020-10775 | BDSA-2020-2191 | Medium | Aug 24, 2020 | An Open redirect vulnerability was found in ovirt-engine versions 4.4 and earlier, where it allows remote attackers to redirect users to arbitrary web more... |
4.3.3.1, 4.3.3, 4.3.2.1, 4.3.2, 4.2.8.5, 4.3.1.1, 4.2.8.4, 4.3.1, 4.3.0.4, 4.3.0.3
|
| CVE-2019-19336 | BDSA-2020-0680 | Medium | Mar 19, 2020 | A cross-site scripting vulnerability was reported in the oVirt-engine's OAuth authorization endpoint before version 4.3.8. URL parameters were included more... |
4.3.3.1, 4.3.3, 4.3.2.1, 4.3.2, 4.2.8.5, 4.3.1.1, 4.2.8.4, 4.3.1, 4.3.0.4, 4.3.0.3
|