CVE-2020-29565
python-django-horizon: dashboard allows open redirect
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and 18.5.x. There is a lack of validation of the "next" parameter, which would allow someone to supply a malicious URL in Horizon that can cause an automatic redirect to the provided malicious URL.
Se detectó un problema en OpenStack Horizon versiones 15.3.2, versiones 16.x anteriores a 16.2.1, versiones 17.x y versiones 18.x anteriores a 18.3.3, versiones 18.4.x y 18.5.x. Se presenta una falta de comprobación del parámetro "next", lo que permitiría a alguien proporcionar una URL maliciosa en Horizon que puede causar un redireccionamiento automático a la URL maliciosa proporcionada
A flaw was found in python-django-horizon. The "next" parameter is not correctly validated allowing a remote attacker to supply a malicious URL in the dashboard that could cause an automatic redirect to the provided malicious site. The highest threat from this vulnerability is to data confidentiality and integrity.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-12-04 CVE Reserved
- 2020-12-04 CVE Published
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
- 2024-11-10 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
CAPEC
References (8)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://bugs.launchpad.net/horizon/+bug/1865026 | 2024-08-04 |
URL | Date | SRC |
---|---|---|
http://www.openwall.com/lists/oss-security/2020/12/08/2 | 2021-03-09 | |
https://review.opendev.org/c/openstack/horizon/+/758841 | 2021-03-09 | |
https://review.opendev.org/c/openstack/horizon/+/758843 | 2021-03-09 | |
https://security.openstack.org/ossa/OSSA-2020-008.html | 2021-03-09 |
URL | Date | SRC |
---|---|---|
https://www.debian.org/security/2020/dsa-4820 | 2021-03-09 | |
https://access.redhat.com/security/cve/CVE-2020-29565 | 2020-12-16 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1811510 | 2020-12-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Openstack Search vendor "Openstack" | Horizon Search vendor "Openstack" for product "Horizon" | >= 15.3.0 < 15.3.2 Search vendor "Openstack" for product "Horizon" and version " >= 15.3.0 < 15.3.2" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Horizon Search vendor "Openstack" for product "Horizon" | >= 16.0.0 < 16.2.1 Search vendor "Openstack" for product "Horizon" and version " >= 16.0.0 < 16.2.1" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Horizon Search vendor "Openstack" for product "Horizon" | >= 17.0.0 < 18.3.3 Search vendor "Openstack" for product "Horizon" and version " >= 17.0.0 < 18.3.3" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Horizon Search vendor "Openstack" for product "Horizon" | >= 18.4.0 <= 18.5.0 Search vendor "Openstack" for product "Horizon" and version " >= 18.4.0 <= 18.5.0" | - |
Affected
| ||||||
Debian Search vendor "Debian" | Debian Linux Search vendor "Debian" for product "Debian Linux" | 10.0 Search vendor "Debian" for product "Debian Linux" and version "10.0" | - |
Affected
|