Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-2056

Опубликовано: 21 мая 2013
Источник: redhat
CVSS2: 5

Описание

The Inter-Satellite Sync (ISS) operation in Red Hat Network (RHN) Satellite 5.3, 5.4, and 5.5 does not properly check client "authenticity," which allows remote attackers to obtain channel content by skipping the initial authentication call.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Satellite 5.2ServerNot affected
Red Hat Network Satellite Server v 5.3spacewalk-backendFixedRHSA-2013:084821.05.2013
Red Hat Network Satellite Server v 5.4spacewalk-backendFixedRHSA-2013:084821.05.2013
Red Hat Network Satellite Server v 5.5spacewalk-backendFixedRHSA-2013:084821.05.2013

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=959524Satellite: Inter-Satellite Sync (ISS) does not require authentication/authorization

5 Medium

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

The Inter-Satellite Sync (ISS) operation in Red Hat Network (RHN) Satellite 5.3, 5.4, and 5.5 does not properly check client "authenticity," which allows remote attackers to obtain channel content by skipping the initial authentication call.

github
больше 3 лет назад

The Inter-Satellite Sync (ISS) operation in Red Hat Network (RHN) Satellite 5.3, 5.4, and 5.5 does not properly check client "authenticity," which allows remote attackers to obtain channel content by skipping the initial authentication call.

5 Medium

CVSS2