Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-3988

Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2015.1.0 allow remote authenticated users to inject arbitrary web script or HTML via the metadata to a (1) Glance image, (2) Nova flavor or (3) Host Aggregate.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 62.8%
CVSS Severity
CVSS v2 Score 3.5
Products affected by CVE-2015-3988
  • Openstack » Horizon » Version: 2015.1.0
    cpe:2.3:a:openstack:horizon:2015.1.0
  • Oracle » Solaris » Version: 11.2
    cpe:2.3:o:oracle:solaris:11.2


Contact Us

Shodan ® - All rights reserved