1 results (0.002 seconds)

CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 0

A flaw was found in the Red Hat OpenShift API Management product. User input is not validated allowing an authenticated user to inject scripts into some text boxes leading to a XSS attack. The highest threat from this vulnerability is to data confidentiality. Se ha encontrado un fallo en el producto Red Hat OpenShift API Management. Las entradas del usuario no son comprobadas, lo que permite a un usuario autenticado inyectar scripts en algunos cuadros de texto, conllevando a un ataque de tipo XSS. • https://access.redhat.com/security/cve/CVE-2021-3442 https://bugzilla.redhat.com/show_bug.cgi?id=1930083 • CWE-20: Improper Input Validation CWE-134: Use of Externally-Controlled Format String •