PT-2011-1298 · Red Hat · Red Hat Network Satellite Server

Jan Lieskovsky

·

Published

2011-04-18

·

Updated

2017-08-17

·

CVE-2009-0788

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Red Hat Network (RHN) Satellite Server versions 5.3 through 5.4
Description The issue allows remote attackers to obtain sensitive host information or use the server as a proxy to connect to arbitrary services and IP addresses.
Recommendations For versions 5.3 through 5.4, update the URL rewriting mechanism to properly handle unspecified URLs and prevent unauthorized access.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-0788
RHSA-2011:0434

Affected Products

Red Hat Network Satellite Server