Known Vulnerabilities for Spacewalk by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Spacewalk" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-1693 json | A flaw was found in Spacewalk up to version 2.9 where it was vulnerable to XML internal entity attacks via the /rpc/api endpo... | 9.8 - CRITICAL | 2020-02-17 | 2023-11-07 |
| CVE-2019-10137 json | A path traversal flaw was found in spacewalk-proxy, all versions through 2.9, in the way the proxy processes cached client to... | 9.8 - CRITICAL | 2019-07-02 | 2023-02-12 |
| CVE-2019-10136 json | It was found that Spacewalk, all versions through 2.9, did not safely compute client token checksums. An attacker with a vali... | 4.3 - MEDIUM | 2019-07-02 | 2023-02-12 |
| CVE-2018-1077 json | Spacewalk 2.6 contains an API which has an XXE flaw allowing for the disclosure of potentially sensitive information from the... | 7.5 - HIGH | 2018-03-14 | 2019-10-09 |
| CVE-2017-7470 json | It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to ... | 9.8 - CRITICAL | 2018-07-27 | 2023-02-12 |
| CVE-2014-7812 json | Cross-site scripting (XSS) vulnerability in Spacewalk and Red Hat Network (RHN) Satellite before 5.7.0 allows remote authenti... | 3.5 - LOW | 2015-01-15 | 2023-02-13 |
| CVE-2014-7811 json | Multiple cross-site scripting (XSS) vulnerabilities in Spacewalk and Red Hat Network (RHN) Satellite before 5.7.0 allow remot... | 3.5 - LOW | 2015-01-15 | 2023-02-13 |
| CVE-2012-0059 json | A flaw was found in Spacewalk-backend. This information disclosure vulnerability occurs when a system registration XML-RPC ca... | 3.5 - LOW | 2014-02-05 | 2026-04-02 |
| CVE-2011-3344 json | A flaw was found in Spacewalk. A remote attacker can exploit a cross-site scripting (XSS) vulnerability in the Lookup Login/P... | 3.5 - LOW | 2014-02-05 | 2026-04-02 |
| CVE-2011-2927 json | A flaw was found in Spacewalk and Red Hat Network Satellite. This vulnerability, known as cross-site scripting (XSS), allows ... | 3.5 - LOW | 2014-02-05 | 2026-04-02 |