Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2014-8163

Опубликовано: 03 мар. 2015
Источник: redhat
CVSS2: 4.9

Описание

Directory traversal vulnerability in the XMLRPC interface in Red Hat Satellite 5.

It was found that an XMLRPC interface exposed by Satellite could allow an attacker to write arbitrary files and directories under the /var/satellite directory on the Satellite server.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Satellite 5SecurityAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=1187340Satellite5: upload_crash_file and upload_result directory traversal

4.9 Medium

CVSS2

Связанные уязвимости

CVSS3: 6.5
nvd
почти 9 лет назад

Directory traversal vulnerability in the XMLRPC interface in Red Hat Satellite 5.

CVSS3: 6.5
github
около 4 лет назад

Directory traversal vulnerability in the XMLRPC interface in Red Hat Satellite 5.

4.9 Medium

CVSS2