CVE-2014-0153
08.09.2014, 14:55
The REST API in oVirt 3.4.0 and earlier stores session IDs in HTML5 local storage, which allows remote attackers to obtain sensitive information via a crafted web page.Enginsight
Vendor | Product | Version |
---|---|---|
ovirt | ovirt | 𝑥 ≤ 3.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration