Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-5603

Опубликовано: 04 янв. 2013
Источник: nvd
CVSS2: 5.5
EPSS Низкий

Описание

proxies_controller.rb in Katello in Red Hat CloudForms before 1.1 does not properly check permissions, which allows remote authenticated users to read consumer certificates or change arbitrary users' settings via unspecified vectors related to the "consumer UUID" of a system.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:redhat:cloudforms:*:*:*:*:*:*:*:*
Версия до 1.0 (включая)

EPSS

Процентиль: 48%
0.00253
Низкий

5.5 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

redhat
около 13 лет назад

proxies_controller.rb in Katello in Red Hat CloudForms before 1.1 does not properly check permissions, which allows remote authenticated users to read consumer certificates or change arbitrary users' settings via unspecified vectors related to the "consumer UUID" of a system.

github
больше 3 лет назад

proxies_controller.rb in Katello in Red Hat CloudForms before 1.1 does not properly check permissions, which allows remote authenticated users to read consumer certificates or change arbitrary users' settings via unspecified vectors related to the "consumer UUID" of a system.

EPSS

Процентиль: 48%
0.00253
Низкий

5.5 Medium

CVSS2

Дефекты

CWE-264