Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown
CVE-2011-1594
Disclosure Date: February 05, 2014 (last updated October 05, 2023)
Open redirect vulnerability in Spacewalk 1.6, as used in Red Hat Network (RHN) Satellite, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url_bounce parameter.
0
Attacker Value
Unknown
CVE-2011-2919
Disclosure Date: February 05, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Spacewalk 1.6, as used in Red Hat Network (RHN) Satellite, allows remote attackers to inject arbitrary web script or HTML via the QueryString to the SystemGroupList.do page.
0
Attacker Value
Unknown
CVE-2013-4480
Disclosure Date: November 18, 2013 (last updated October 05, 2023)
Red Hat Satellite 5.6 and earlier does not disable the web interface that is used to create the first user for a satellite, which allows remote attackers to create administrator accounts.
0
Attacker Value
Unknown
CVE-2009-4139
Disclosure Date: July 27, 2011 (last updated October 04, 2023)
Cross-site request forgery (CSRF) vulnerability in the Spacewalk Java site packages (aka spacewalk-java) 1.2.39 in Spacewalk, as used in the server in Red Hat Network Satellite 5.3.0 through 5.4.1 and other products, allows remote attackers to hijack the authentication of arbitrary users for requests that (1) disable the current user account, (2) add user accounts, or (3) modify user accounts to have administrator privileges.
0
Attacker Value
Unknown
CVE-2009-0788
Disclosure Date: April 18, 2011 (last updated October 04, 2023)
Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs, which allows remote attackers to (1) obtain unspecified sensitive host information or (2) use the server as an inadvertent proxy to connect to arbitrary services and IP addresses via unspecified vectors.
0
Attacker Value
Unknown
CVE-2011-0717
Disclosure Date: February 25, 2011 (last updated October 04, 2023)
Session fixation vulnerability in Red Hat Network (RHN) Satellite Server 5.4 allows remote attackers to hijack web sessions via unspecified vectors related to Spacewalk.
0
Attacker Value
Unknown
CVE-2011-0718
Disclosure Date: February 25, 2011 (last updated October 04, 2023)
Red Hat Network (RHN) Satellite Server 5.4 does not use a time delay after a failed login attempt, which makes it easier for remote attackers to conduct brute force password guessing attacks.
0
Attacker Value
Unknown
CVE-2007-5961
Disclosure Date: May 23, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the Red Hat Network channel search feature, as used in RHN and Red Hat Network Satellite before 5.0.2, allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
0