PT-2013-3520 · Red Hat · Red Hat Network Satellite

Publicado

2013-07-31

·

Atualizado

2022-02-03

·

CVE-2013-2056

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Red Hat Network Satellite versions 5.3 through 5.5
Description The Inter-Satellite Sync operation in Red Hat Network Satellite does not properly check client authenticity, allowing remote attackers to obtain channel content by skipping the initial authentication call.
Recommendations For versions 5.3 through 5.5, consider restricting access to the Inter-Satellite Sync operation until a proper fix is applied, to minimize the risk of unauthorized channel content access.

Correção

Improper Authentication

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-2056
RHSA-2013:0848

Produtos afetados

Red Hat Network Satellite