CVE Database
/

CVE-2013-0196

Back to search

CVE-2013-0196

Published: Dec 30, 2019

Modified: Aug 6, 2024

PUBLISHED

Description

A CSRF issue was found in OpenShift Enterprise 1.2. The web console is using 'Basic authentication' and the REST API has no CSRF attack protection mechanism. This can allow an attacker to obtain the credential and the Authorization: header when requesting the REST API via web browser.

VendorProductVersions

OpenShift

OpenShift Enterprise

affected
1.2

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now