Vulnerabilities > Redhat > Ovirt Engine > 4.2.0

DATE CVE VULNERABILITY TITLE RISK
2020-08-24 CVE-2020-10775 Open Redirect vulnerability in multiple products
An Open redirect vulnerability was found in ovirt-engine versions 4.4 and earlier, where it allows remote attackers to redirect users to arbitrary web sites and attempt phishing attacks.
network
high complexity
oracle redhat CWE-601
5.3
2018-03-13 CVE-2018-1000095 Cross-site Scripting vulnerability in Redhat Ovirt-Engine
oVirt version 4.2.0 to 4.2.2 contains a Cross Site Scripting (XSS) vulnerability in the name/description of VMs portion of the web admin application.
network
low complexity
redhat CWE-79
4.8