Lucene search
Basic search
Lucene search
Search by product
Subscribe
K
Start 30-day trial
Database
Vendors
Products
Years
CVSS
Scanner
Agent Scanning
API Scanning
Manual Audit
Perimeter Scanner
Scanning
Projects
Email
Webhook
Plugins
Resources
Documents
Blog
Glossary
FAQ
Pricing
Contacts
About Us
Partners
Branding Guideline
SIGN IN
OracleLinux
ELSA-2021-0860
History
Mar 19, 2021 - 12:00 a.m.
ipa security and bug fix update
Vulners
Oraclelinux
ipa security and bug fix update
2021-03-19
00:00:00
linux.oracle.com
147
0.019 Low
EPSS
Percentile
88.6%
JSON
[4.6.8-5.0.1]
Blank out header-logo.png product-name.png
Replace login-screen-logo.png [Orabug: 20362818]
[4.6.8-5.el7_9.4]
Resolves: #1897253 IPA WebUI inaccessible after upgrading to RHEL 8.3.- idoverride-memberof.js missing
wgi/plugins.py: ignore empty plugin directories
Resolves: #1895197 improve IPA PKI susbsystem detection by other means than a directory presence, use pki-server subsystem-find
Improve PKI subsystem detection
ipatests: add test for PKI subsystem detection
ipatest: fix test_upgrade.py::TestUpgrade::()::test_kra_detection
Resolves: #1892793 Authentication and login times are over several seconds due to unindexed ipaExternalMember
Add more indices
Resolves: #1884819 IdM Web UI shows users as disabled
fix cert-find errors in CA-less deployment
Resolves: #1863619 CA-less install does not set required permissions on KDC certificate
CAless installation: set the perms on KDC cert file
ipatests: check KDC cert permissions in CA less install
Resolves: #1859248 CVE-2020-11023 ipa: jquery: Passing HTML containing
elements to manipulation methods could result in untrusted code execution
WebUI: Fix jQuery DOM manipulation issues
Resolves: #1846349 cannot issue certs with multiple IP addresses corresponding to different hosts
fix iPAddress cert issuance for >1 host/service
Affected Package
OS
Version
Architecture
Package
Version
Filename
oracle linux
7
src
ipa
< 4.6.8-5.0.1.el7_9.4
ipa-4.6.8-5.0.1.el7_9.4.src.rpm
oracle linux
7
aarch64
ipa-client
< 4.6.8-5.0.1.el7_9.4
ipa-client-4.6.8-5.0.1.el7_9.4.aarch64.rpm
oracle linux
7
noarch
ipa-client-common
< 4.6.8-5.0.1.el7_9.4
ipa-client-common-4.6.8-5.0.1.el7_9.4.noarch.rpm
oracle linux
7
noarch
ipa-common
< 4.6.8-5.0.1.el7_9.4
ipa-common-4.6.8-5.0.1.el7_9.4.noarch.rpm
oracle linux
7
noarch
ipa-python-compat
< 4.6.8-5.0.1.el7_9.4
ipa-python-compat-4.6.8-5.0.1.el7_9.4.noarch.rpm
oracle linux
7
aarch64
ipa-server
< 4.6.8-5.0.1.el7_9.4
ipa-server-4.6.8-5.0.1.el7_9.4.aarch64.rpm
oracle linux
7
noarch
ipa-server-common
< 4.6.8-5.0.1.el7_9.4
ipa-server-common-4.6.8-5.0.1.el7_9.4.noarch.rpm
oracle linux
7
noarch
ipa-server-dns
< 4.6.8-5.0.1.el7_9.4
ipa-server-dns-4.6.8-5.0.1.el7_9.4.noarch.rpm
oracle linux
7
aarch64
ipa-server-trust-ad
< 4.6.8-5.0.1.el7_9.4
ipa-server-trust-ad-4.6.8-5.0.1.el7_9.4.aarch64.rpm
oracle linux
7
noarch
python2-ipaclient
< 4.6.8-5.0.1.el7_9.4
python2-ipaclient-4.6.8-5.0.1.el7_9.4.noarch.rpm
Rows per page:
10
1-10 of 24
1
Related
openvas 19
nessus 61
redhat 11
prion 1
osv 10
amazon 1
github 2
zdt 1
cve 2
packetstorm 1
redhatcve 1
oraclelinux 4
debiancve 2
alpinelinux 1
ibm 39
almalinux 2
ubuntucve 2
ics 1
cvelist 1
nvd 2
f5 1
rocky 2
veracode 1
exploitdb 1
fedora 6
atlassian 5
joomla 1
hp 2
attackerkb 2
suse 3
githubexploit 2
debian 2
checkpoint_advisories 1
drupal 1
gentoo 1
typo3 1
altlinux 1
freebsd 1
adobe 1
openvas
openvas
19
jQuery 1.0.3 < 3.5.0 XSS Vulnerability
2020-05-05 00:00:00
openSUSE: Security Advisory for otrs (openSUSE-SU-2020:1888-1)
2020-11-10 00:00:00
Debian: Security Advisory (DLA-2608-1)
2021-03-26 00:00:00
nessus
nessus
61
RHEL 8 : python-XStatic-jQuery224 (RHSA-2020:5412)
2020-12-18 00:00:00
Amazon Linux 2 : ipa (ALAS-2021-1626)
2021-04-22 00:00:00
RHEL 7 : ipa (RHSA-2021:0860)
2021-03-17 00:00:00
redhat
redhat
11
(RHSA-2021:1846) Moderate: idm:DL1 and idm:client security, bug fix, and enhancement update
2021-05-18 06:14:07
(RHSA-2021:0860) Moderate: ipa security and bug fix update
2021-03-16 10:27:14
(RHSA-2020:5412) Moderate: python-XStatic-jQuery224 security update
2020-12-15 17:29:55
prion
prion
Code injection
2020-04-29 21:15:00
osv
osv
10
Potential XSS vulnerability in jQuery
2020-04-29 22:19:14
CVE-2020-11023
2020-04-29 21:15:11
BIT-drupal-2020-11023
2024-03-06 10:59:06
amazon
amazon
Medium: ipa
2021-04-20 17:55:00
github
github
Potential XSS vulnerability in jQuery
2020-04-29 22:19:14
Persistent Cross-site Scripting vulnerability in PrivateBin
2022-04-12 20:45:22
zdt
zdt
jQuery 1.0.3 - Cross-Site Scripting Vulnerability
2021-04-14 00:00:00
cve
cve
CVE-2020-11023
2020-04-29 21:15:11
CVE-2020-23064
2023-06-26 19:15:09
packetstorm
packetstorm
jQuery 1.0.3 Cross Site Scripting
2021-04-14 00:00:00
redhatcve
redhatcve
CVE-2020-11023
2021-06-20 07:11:02
oraclelinux
oraclelinux
4
bootstrap security update
2021-08-09 00:00:00
idm:DL1 and idm:client security, bug fix, and enhancement update
2021-05-25 00:00:00
jquery-ui security update
2022-03-01 00:00:00
debiancve
debiancve
CVE-2020-11023
2020-04-29 21:15:11
CVE-2020-23064
2023-06-26 19:15:09
alpinelinux
alpinelinux
CVE-2020-11023
2020-04-29 21:15:11
ibm
ibm
39
Security Bulletin: IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data is vulnerable to cross-site scripting in jQuery (CVE-2020-11023)
2023-01-12 21:59:00
Security Bulletin: jQuery Vulnerabilities Affect IBM Emptoris Sourcing (CVE-2020-11023, CVE-2020-11022)
2020-12-03 09:54:47
Security Bulletin: Multiple vulnerabilities in jQuery affect IBM WIoTP MessageGateway (CVE-2020-11023, CVE-2020-11022)
2020-08-11 19:22:50
almalinux
almalinux
Moderate: idm:DL1 and idm:client security, bug fix, and enhancement update
2021-05-18 06:14:07
Low: pcs security, bug fix, and enhancement update
2021-11-09 08:21:49
ubuntucve
ubuntucve
CVE-2020-11023
2020-04-29 00:00:00
CVE-2020-23064
2023-06-26 00:00:00
ics
ics
Sensormatic Electronics VideoEdge
2021-11-02 12:00:00
cvelist
cvelist
CVE-2020-11023 Potential XSS vulnerability in jQuery
2020-04-29 00:00:00
nvd
nvd
CVE-2020-11023
2020-04-29 21:15:11
CVE-2020-23064
2023-06-26 19:15:09
f5
f5
K66544153 : jQuery vulnerability CVE-2020-11023
2020-08-03 00:00:00
rocky
rocky
idm:DL1 and idm:client security, bug fix, and enhancement update
2021-05-18 06:14:07
pcs security, bug fix, and enhancement update
2021-11-09 08:21:49
veracode
veracode
Cross-Site Scripting (XSS)
2020-04-30 02:21:22
exploitdb
exploitdb
jQuery 1.0.3 - Cross-Site Scripting (XSS)
2021-04-14 00:00:00
fedora
fedora
6
[SECURITY] Fedora 32 Update: drupal8-8.9.0-1.fc32
2020-06-16 01:32:24
[SECURITY] Fedora 33 Update: drupal7-7.72-1.fc33
2020-09-25 17:15:48
[SECURITY] Fedora 32 Update: cacti-1.2.13-1.fc32
2020-07-23 01:06:59
atlassian
atlassian
5
Update jQuery to avoid CVE-2020-11022 and CVE-2020-11023
2021-02-02 09:59:24
Update jQuery to avoid CVE-2020-11022 and CVE-2020-11023
2021-02-02 09:59:24
jquery 2.2.4 XSS vulnerability
2022-08-24 14:53:45
joomla
joomla
[20200604] - Core - XSS in jQuery.htmlPrefilter
2020-04-10 00:00:00
hp
hp
HPSBPI03688 rev. 1 - Certain HP Printer and MFP products - Cross-Site Scripting (XSS)
2020-09-17 00:00:00
Certain HP Printers and MFP products - Cross-Site Scripting (XSS)
2020-09-17 00:00:00
attackerkb
attackerkb
CVE-2020-11023
2020-04-29 00:00:00
CVE-2020-11022
2020-04-29 00:00:00
suse
suse
Security update for otrs (moderate)
2020-11-10 00:00:00
Security update for cacti, cacti-spine (moderate)
2020-07-25 00:00:00
Security update for cacti, cacti-spine (moderate)
2020-07-28 00:00:00
githubexploit
githubexploit
Exploit for Cross-site Scripting in Jquery
2021-10-16 01:10:33
Exploit for Cross-site Scripting in Jquery
2020-04-14 19:12:01
debian
debian
[SECURITY] [DLA 2608-1] jquery security update
2021-03-26 01:32:22
[SECURITY] [DSA 4693-1] drupal7 security update
2020-05-26 21:08:21
checkpoint_advisories
checkpoint_advisories
jQuery Cross Site Scripting (CVE-2020-11022; CVE-2020-11023)
2020-11-16 00:00:00
drupal
drupal
Drupal core - Moderately critical - Cross Site Scripting - SA-CORE-2020-002
2020-05-20 00:00:00
gentoo
gentoo
Cacti: Multiple vulnerabilities
2020-07-26 00:00:00
typo3
typo3
Cross-Site Scripting in extension "Kitodo.Presentation" (dlf)
2020-07-29 00:00:00
altlinux
altlinux
Security fix for the ALT Linux 9 package phpipam version 1.42.027-alt1
2020-10-21 00:00:00
freebsd
freebsd
Cacti -- multiple vulnerabilities
2020-07-15 00:00:00
adobe
adobe
APSB19-38 Security update available for Adobe Experience Manager
2019-07-09 00:00:00
0.019 Low
EPSS
Percentile
88.6%
JSON
Related for ELSA-2021-0860
openvas
19
nessus
61
redhat
11
prion
1
osv
10
amazon
1
github
2
zdt
1
cve
2
packetstorm
1
redhatcve
1
oraclelinux
4
debiancve
2
alpinelinux
1
ibm
39
almalinux
2
ubuntucve
2
ics
1
cvelist
1
nvd
2
f5
1
rocky
2
veracode
1
exploitdb
1
fedora
6
atlassian
5
joomla
1
hp
2
attackerkb
2
suse
3
githubexploit
2
debian
2
checkpoint_advisories
1
drupal
1
gentoo
1
typo3
1
altlinux
1
freebsd
1
adobe
1