Skip to main content

Vendor/product archive

redhat / network_satellite CVEs

Beta · best-effort

10 CVEs tagged to redhat / network_satellite0 Critical, 2 High, 7 Medium, 1 Low, 0 Unrated.

CVE-2014-8162

Published May 14, 2015

XML external entity (XXE) in the RPC interface in Spacewalk and Red Hat Network (RHN) Satellite 5.7 and earlier allows remote attackers to read arbitrary files and possibly have o…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2013-2143

Published Apr 17, 2014

The users controller in Katello 1.5.0-14 and earlier, and Red Hat Satellite, does not check authorization for the update_roles action, which allows remote authenticated users to g…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-3344

Published Feb 5, 2014

A flaw was found in Spacewalk. A remote attacker can exploit a cross-site scripting (XSS) vulnerability in the Lookup Login/Password form by injecting arbitrary web script or HTML…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2927

Published Feb 5, 2014

A flaw was found in Spacewalk and Red Hat Network Satellite. This vulnerability, known as cross-site scripting (XSS), allows remote attackers to inject malicious web scripts or HT…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2920

Published Feb 5, 2014

A flaw was found in Spacewalk and Red Hat Network Satellite. This cross-site scripting (XSS) vulnerability allows a remote attacker to inject arbitrary web script or HTML into web…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2919

Published Feb 5, 2014

Cross-site scripting (XSS) vulnerability in Spacewalk 1.6, as used in Red Hat Network (RHN) Satellite, allows remote attackers to inject arbitrary web script or HTML via the Query…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5961

Published May 23, 2008

Cross-site scripting (XSS) vulnerability in the Red Hat Network channel search feature, as used in RHN and Red Hat Network Satellite before 5.0.2, allows remote attackers to injec…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1