2.6
CVSSv2

CVE-2008-3270

Published: 18/08/2008 Updated: 29/09/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Summary

yum-rhn-plugin in Red Hat Enterprise Linux (RHEL) 5 does not verify the SSL certificate for a file download from a Red Hat Network (RHN) server, which makes it easier for remote man-in-the-middle malicious users to cause a denial of service (loss of updates) or force the download and installation of official Red Hat packages that were not requested.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise linux 5.0