All 12 CVE vulnerabilities found in ovirt-engine, with AI-generated Chinese analysis, references, and POCs.
This page presents a comprehensive aggregation of Common Weakness Enumerations (CWE) associated with the ovirt-engine software product, maintained by the oVirt project. It serves as a centralized reference point for security researchers, system administrators, and developers seeking detailed insights into the vulnerability landscape surrounding this specific virtualization management platform. The collection gathers data on various security weaknesses, ranging from cross-site scripting and path traversal to privilege escalation flaws, covering significant historical data up to the most recent disclosures. By consolidating these records, the page enables users to effectively track vendor advisories and monitor the evolution of security patches over time. Readers can utilize this resource to understand the prevalence and characteristics of specific weakness classes within the context of ovirt-engine’s architecture. Furthermore, it allows for the examination of a product’s vulnerability history, providing a chronological view of how security issues have been identified and resolved. This holistic approach facilitates better risk assessment and informs the development of more robust security configurations. The data is structured to support both broad trend analysis and specific incident investigation, ensuring that stakeholders have access to the necessary information for maintaining system integrity. This introduction outlines the scope and utility of the vulnerability aggregation page for ovirt-engine, highlighting its role in enhancing transparency and security awareness.
Vendor: ovirt-engine
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2022-2805 | ovirt-engine 信息泄露漏洞 CWE-312 | 5.5 | - | 2022-10-19 |
| CVE-2022-3193 | ovirt-engine 跨站脚本漏洞 CWE-79 | 6.1 | - | 2022-09-28 |
| CVE-2020-35497 | ovirt-engine 信息泄露漏洞 CWE-284 | 6.5 | - | 2020-12-21 |
| CVE-2020-10775 | ovirt-engine 输入验证错误漏洞 CWE-451 | 4.7 | - | 2020-08-24 |
| CVE-2020-14333 | Red Hat oVirt 跨站脚本漏洞 CWE-79 | 6.3 | Medium | 2020-08-18 |
| CVE-2019-19336 | oVirt-engine‘s OAuth authorization endpoint 跨站脚本漏洞 CWE-79 | 6.1 | - | 2020-03-19 |
| CVE-2013-4367 | ovirt-engine 安全漏洞 | 7.8 | - | 2019-11-01 |
| CVE-2019-3879 | ovirt REST API 授权问题漏洞 CWE-862 | 8.1 | - | 2019-03-25 |
| CVE-2017-15113 | Red Hat oVirt Engine 信息泄露漏洞 CWE-212 | 5.9 | - | 2018-07-27 |
| CVE-2018-1073 | Red Hat ovirt-engine 信息泄露漏洞 CWE-209 | 5.3 | - | 2018-06-19 |
| CVE-2018-1075 | ovirt-engine 日志信息泄露漏洞 CWE-532 | 8.4 | - | 2018-06-12 |
| CVE-2018-1074 | Red Hat ovirt-engine API和administration web portal 安全漏洞 CWE-200 | 7.2 | - | 2018-04-26 |
All 12 known CVE vulnerabilities affecting ovirt-engine with full Chinese analysis, references, and POCs where available.