← back
CVE-2020-10715

CVE-2020-10715

EPSS 0.9%CWE-20
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 0.9%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
16 Sep 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A content spoofing vulnerability was found in the openshift/console 3.11 and 4.x. This flaw allows an attacker to craft a URL and inject arbitrary text onto the error page that appears to be from the OpenShift instance. This attack could potentially convince a user that the inserted text is legitimate.
Affected products
n/a · openshift/console