Back to search
CVE-2022-3193
Published: Sep 28, 2022
Modified: May 20, 2025
PUBLISHED
Description
An HTML injection/reflected Cross-site scripting (XSS) vulnerability was found in the ovirt-engine. A parameter "error_description" fails to sanitize the entry, allowing the vulnerability to trigger on the Windows Service Accounts home pages.
| Vendor | Product | Versions |
|---|---|---|
n/a | ovirt-engine | affected ovirt-engine 4.3 |
Weaknesses (CWE)
References
https://bugzilla.redhat.com/show_bug.cgi?id=2126353
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now