CVE-2022-3193
28.09.2022, 19:15
An HTML injection/reflected Cross-site scripting (XSS) vulnerability was found in the ovirt-engine. A parameter "error_description" fails to sanitize the entry, allowing the vulnerability to trigger on the Windows Service Accounts home pages.
Vendor | Product | Version |
---|---|---|
ovirt | ovirt-engine | 4.3.0 |
𝑥
= Vulnerable software versions