Ubuntu Security Notice USN-1439-1

newsbot

newsbot

RSS Feed
Ubuntu Security Notice 1439-1 - Matthias Weckbecker discovered a cross-site scripting (XSS) vulnerability in Horizon via the log viewer refresh mechanism. If a user were tricked into viewing a specially crafted log message, a remote attacker could exploit this to modify the contents or steal confidential data within the same domain. Thomas Biege discovered a session fixation vulnerability in Horizon. An attacker could exploit this to potentially allow access to unauthorized information and capabilities. Various other issues were also addressed.

Weiterlesen...
 

Ähnliche Themen

Ubuntu Security Notice USN-1604-1

Ubuntu Security Notice USN-1665-1

Ubuntu Security Notice USN-1620-1

Ubuntu Security Notice USN-1680-1

Ubuntu Security Notice USN-1517-1

Zurück
Oben