Known Vulnerabilities for Spacewalk by Redhat
Listed below are 10 of the newest known vulnerabilities associated with "Spacewalk" by "Redhat".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-1693 | A flaw was found in Spacewalk up to version 2.9 where it was vulnerable to XML internal entity attacks via the /rpc/api endpo... | 9.8 - CRITICAL | 2020-02-17 | 2023-11-07 |
| CVE-2019-10137 | A path traversal flaw was found in spacewalk-proxy, all versions through 2.9, in the way the proxy processes cached client to... | 9.8 - CRITICAL | 2019-07-02 | 2023-02-12 |
| CVE-2019-10136 | It was found that Spacewalk, all versions through 2.9, did not safely compute client token checksums. An attacker with a vali... | 4.3 - MEDIUM | 2019-07-02 | 2023-02-12 |
| CVE-2018-1077 | Spacewalk 2.6 contains an API which has an XXE flaw allowing for the disclosure of potentially sensitive information from the... | 7.5 - HIGH | 2018-03-14 | 2019-10-09 |
| CVE-2017-7470 | It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to ... | 9.8 - CRITICAL | 2018-07-27 | 2023-02-12 |
| CVE-2014-7812 | Cross-site scripting (XSS) vulnerability in Spacewalk and Red Hat Network (RHN) Satellite before 5.7.0 allows remote authenti... | 3.5 - LOW | 2015-01-15 | 2023-02-13 |
| CVE-2014-7811 | Multiple cross-site scripting (XSS) vulnerabilities in Spacewalk and Red Hat Network (RHN) Satellite before 5.7.0 allow remot... | 3.5 - LOW | 2015-01-15 | 2023-02-13 |
| CVE-2012-0059 | A flaw was found in Spacewalk-backend. This information disclosure vulnerability occurs when a system registration XML-RPC ca... | 3.5 - LOW | 2014-02-05 | 2026-04-02 |
| CVE-2011-3344 | A flaw was found in Spacewalk. A remote attacker can exploit a cross-site scripting (XSS) vulnerability in the Lookup Login/P... | 3.5 - LOW | 2014-02-05 | 2026-04-02 |
| CVE-2011-2927 | A flaw was found in Spacewalk and Red Hat Network Satellite. This vulnerability, known as cross-site scripting (XSS), allows ... | 3.5 - LOW | 2014-02-05 | 2026-04-02 |