- Description
- Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs, which allows remote attackers to (1) obtain unspecified sensitive host information or (2) use the server as an inadvertent proxy to connect to arbitrary services and IP addresses via unspecified vectors.
- Source
- secalert@redhat.com
- NVD status
- Modified
CVSS 2.0
- Type
- Primary
- Base score
- 6.4
- Impact score
- 4.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:N
- nvd@nist.gov
- CWE-200
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:redhat:network_satellite_server:5.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1EC02C51-97F3-4014-B22D-0FC86F37E81B"
},
{
"criteria": "cpe:2.3:a:redhat:network_satellite_server:5.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "4C97A99B-1303-4B2B-8B06-799837D66A57"
}
],
"operator": "OR"
}
]
}
]