7.5
CVSSv2

CVE-2013-4480

Published: 18/11/2013 Updated: 13/02/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Red Hat Satellite 5.6 and previous versions does not disable the web interface that is used to create the first user for a satellite, which allows remote malicious users to create administrator accounts.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat network satellite

redhat satellite with embedded oracle 5.4

redhat satellite with embedded oracle 5.3

redhat satellite with embedded oracle 5.5

redhat satellite

redhat satellite with embedded oracle 5.2

suse manager 1.7

suse linux enterprise 11.0

Vendor Advisories

Synopsis Critical: rhn-java-sat security update Type/Severity Security Advisory: Critical Topic An updated rhn-java-sat package that fixes a security issue is now available forRed Hat Network Satellite 52The Red Hat Security Response Team has rated this update as having criticalsecurity impact A Common V ...
Synopsis Critical: spacewalk-java security update Type/Severity Security Advisory: Critical Topic Updated spacewalk-java packages that fix one security issue are nowavailable for Red Hat Satellite 53, 54, 55 and 56The Red Hat Security Response Team has rated this update as having criticalsecurity impac ...