RSS   Vulnerabilities for 'Network satellite'   RSS

2012-06-15
 
CVE-2012-1145

 

 
spacewalk-backend in Red Hat Network Satellite 5.4 on Red Hat Enterprise Linux 6 does not properly authorize or authenticate uploads to the NULL organization when mod_wsgi is used, which allows remote attackers to cause a denial of service (/var partition disk consumption and failed updates) via a large number of package uploads.

 
2011-12-10
 
CVE-2011-4346

CWE-79
 

 
Cross-site scripting (XSS) vulnerability in the web interface in Red Hat Network (RHN) Satellite 5.4.1 allows remote authenticated users to inject arbitrary web script or HTML via the Description field of the asset tag in a Custom Info page.

 

 >>> Vendor: Red hat 10 Products
Directory server
Linux kernel
Enterprise linux
Enterprise linux desktop
Fedora core
Network satellite server
Enterprise linux desktop workstation
Fedora directory server
Enterprise linux kernel
Network satellite


Copyright 2024, cxsecurity.com

 

Back to Top