Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8hhp-cr56-3gg7

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to an incorrect authorization check in backend/server/rhnChannel.py.

It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to an incorrect authorization check in backend/server/rhnChannel.py.

EPSS

Процентиль: 73%
0.00766
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 6.5
redhat
больше 8 лет назад

It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to an incorrect authorization check in backend/server/rhnChannel.py.

CVSS3: 6.5
nvd
больше 7 лет назад

It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to an incorrect authorization check in backend/server/rhnChannel.py.

suse-cvrf
больше 8 лет назад

Security update for SUSE Manager Client Tools

EPSS

Процентиль: 73%
0.00766
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-863