Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2012-3540
Description:Open redirect vulnerability in views/auth_forms.py in OpenStack Dashboard (Horizon) Essex (2012.1) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the next parameter to auth/login/. NOTE: this issue was originally assigned CVE-2012-3542 by mistake.
Test IDs: 1.3.6.1.4.1.25623.1.0.72194   1.3.6.1.4.1.25623.1.0.841144  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2012-3540
50480
http://secunia.com/advisories/50480
55329
http://www.securityfocus.com/bid/55329
USN-1565-1
http://www.ubuntu.com/usn/USN-1565-1
[openstack] 20120830 Re: [OSSA 2012-012] Horizon, Open redirect through 'next' parameter (CVE-2012-3540)
https://lists.launchpad.net/openstack/msg16281.html
[openstack] 20120830 [OSSA 2012-012] Horizon, Open redirect through 'next' parameter (CVE-2012-3542)
https://lists.launchpad.net/openstack/msg16278.html
[oss-security] 20120830 Re: [Openstack] [OSSA 2012-012] Horizon, Open redirect through 'next' parameter (CVE-2012-3540)
http://www.openwall.com/lists/oss-security/2012/08/30/5
[oss-security] 20120830 [OSSA 2012-012] Horizon, Open redirect through 'next' parameter (CVE-2012-3542)
http://www.openwall.com/lists/oss-security/2012/08/30/4
https://bugs.launchpad.net/horizon/+bug/1039077
https://bugs.launchpad.net/horizon/+bug/1039077
https://github.com/openstack/horizon/commit/35eada8a27323c0f83c400177797927aba6bc99b
https://github.com/openstack/horizon/commit/35eada8a27323c0f83c400177797927aba6bc99b
openstackdashboard-next-open-redirect(78196)
https://exchange.xforce.ibmcloud.com/vulnerabilities/78196




© 1998-2025 E-Soft Inc. All rights reserved.