3.5
CVSSv2

CVE-2014-7811

Published: 15/01/2015 Updated: 13/02/2023
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Spacewalk and Red Hat Network (RHN) Satellite prior to 5.7.0 allow remote authenticated users to inject arbitrary web script or HTML via crafted XML data to the REST API.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat spacewalk -

redhat network satellite

suse manager 1.7

Vendor Advisories

Synopsis Moderate: Red Hat Satellite 570 General Availability Type/Severity Security Advisory: Moderate Topic Red Hat Satellite 570 is now available Updated packages that fix twosecurity issues, several bugs, and add various enhancements are nowavailable for Red Hat Satellite 5Red Hat Product Security ...
Multiple cross-site scripting (XSS) vulnerabilities in Spacewalk and Red Hat Network (RHN) Satellite before 570 allow remote authenticated users to inject arbitrary web script or HTML via crafted XML data to the REST API ...