CVE-2013-0164
- EPSS 0.06%
- Veröffentlicht 24.02.2013 22:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The lockwrap function in port-proxy/bin/openshift-port-proxy-cfg in Red Hat OpenShift Origin before 1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp.
CVE-2012-5647
- EPSS 0.48%
- Veröffentlicht 24.02.2013 21:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Open redirect vulnerability in node-util/www/html/restorer.php in Red Hat OpenShift Origin before 1.0.5-3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the PATH_INFO.
CVE-2012-5646
- EPSS 0.93%
- Veröffentlicht 24.02.2013 21:55:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
node-util/www/html/restorer.php in the Red Hat OpenShift Origin before 1.0.5-3 allows remote attackers to execute arbitrary commands via a crafted uuid in the PATH_INFO.
CVE-2012-5622
- EPSS 0.16%
- Veröffentlicht 18.12.2012 01:55:07
- Zuletzt bearbeitet 29.04.2026 01:13:23
Cross-site request forgery (CSRF) vulnerability in the management console (openshift-console/app/controllers/application_controller.rb) in OpenShift 0.0.5 allows remote attackers to hijack the authentication of arbitrary users via unspecified vectors...