Vulnerabilities
Vulnerable Software
Openstack:  >> Manila  >> 2.0.0  Security Vulnerabilities
OpenStack Manila <7.4.1, >=8.0.0 <8.1.1, and >=9.0.0 <9.1.1 allows attackers to view, update, delete, or share resources that do not belong to them, because of a context-free lookup of a UUID. Attackers may also create resources, such as shared file systems and groups of shares on such share networks.
CVSS Score
8.3
EPSS Score
0.003
Published
2020-03-12
Cross-site scripting (XSS) vulnerability in the "Shares" overview in Openstack Manila before 2.5.1 allows remote authenticated users to inject arbitrary web script or HTML via the Metadata field in the "Create Share" form.
CVSS Score
5.4
EPSS Score
0.003
Published
2017-04-21


Contact Us

Shodan ® - All rights reserved