Lucene search

K
cveRedhatCVE-2009-0788
HistoryApr 18, 2011 - 5:55 p.m.

CVE-2009-0788

2011-04-1817:55:00
CWE-200
redhat
web.nvd.nist.gov
32
red hat
rhn
satellite server
cve-2009-0788
url rewrite
vulnerability

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

6.7

Confidence

Low

EPSS

0.006

Percentile

79.0%

Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs, which allows remote attackers to (1) obtain unspecified sensitive host information or (2) use the server as an inadvertent proxy to connect to arbitrary services and IP addresses via unspecified vectors.

Affected configurations

Nvd
Node
redhatnetwork_satellite_serverMatch5.3
OR
redhatnetwork_satellite_serverMatch5.4
VendorProductVersionCPE
redhatnetwork_satellite_server5.3cpe:2.3:a:redhat:network_satellite_server:5.3:*:*:*:*:*:*:*
redhatnetwork_satellite_server5.4cpe:2.3:a:redhat:network_satellite_server:5.4:*:*:*:*:*:*:*

CVSS2

6.4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

AI Score

6.7

Confidence

Low

EPSS

0.006

Percentile

79.0%