|
|
| |
| OpenStack Dashboard Horizon is prone to a session-fixation vulnerability. |
| |
Credit:
The information has been provided by Thomas Biege.
The original article can be found at: http://www.securityfocus.com/bid/53399
|
| |
Vulnerable Systems:
* OpenStack Dashboard (Horizon) 2012.1
An attacker can exploit this issue to hijack an arbitrary session and gain unauthorized access to the affected application.
Vendor Status:
Vendor had issued an update for this vulnerability
Patch Availability:
http://horizon.openstack.org/intro.html
CVE Information:
CVE-2012-2144
Disclosure Timeline:
Initial Release: May 07 2012
|
|
blog comments powered by
|