Monday, December 30, 2019

New vulnerability on the NVD: CVE-2013-0196

A CSRF issue was found in OpenShift Enterprise 1.2. The web console is using 'Basic authentication' and the REST API has no CSRF attack protection mechanism. This can allow an attacker to obtain the credential and the Authorization: header when requesting the REST API via web browser.

Published at: December 31, 2019 at 12:15AM
View on website

No comments:

Post a Comment