NA

CVE-2023-0119

Published: 12/09/2023 Updated: 03/05/2024
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

A stored Cross-site scripting vulnerability was found in foreman. The Comment section in the Hosts tab has incorrect filtering of user input data. As a result of the attack, an attacker with an existing account on the system can steal another user's session, make requests on behalf of the user, and obtain user credentials.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat satellite 6.13

Vendor Advisories

Synopsis Moderate: Satellite 6131 Async Security Update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic Updated Satellite 613 packages that fixes important security bugs and several regular bugs are now available for Re ...