7.5
CVSSv3

CVE-2018-10865

Published: 26/05/2021 Updated: 10/02/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

It exists that the /configuration view of redhat-certification 7 does not perform an authorization check and it allows an unauthenticated user to call a "restart" RPC method on any host accessible by the system, even if not belonging to him.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat certification 7.0

Vendor Advisories

Impact: Low Public Date: 2018-06-21 CWE: CWE-862 Bugzilla: 1593631: CVE-2018-10865 redhat-certification ...