AVG-2430 log
Package | cockpit |
Status | Fixed |
Severity | Medium |
Type | insufficient validation |
Affected | 253-1 |
Fixed | 254-1 |
Current | 329-1 [extra] |
Ticket | None |
Created | Thu Sep 30 14:26:10 2021 |
Issue | Severity | Remote | Type | Description |
---|---|---|---|---|
CVE-2021-3660 | Medium | Yes | Insufficient validation | Cockpit (and its plugins) do not seem to protect itself against clickjacking. It is possible to render a page from a cockpit server via another website,... |