CVE-2009-0788

Severity
6.4MEDIUM
EPSS
0.6%
top 31.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 18
Latest updateMay 2

Description

Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs, which allows remote attackers to (1) obtain unspecified sensitive host information or (2) use the server as an inadvertent proxy to connect to arbitrary services and IP addresses via unspecified vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:NExploitability: 10.0 | Impact: 4.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-688x-7w25-gh2x: Red Hat Network (RHN) Satellite Server 52022-05-02
CVEList
CVE-2009-0788: Red Hat Network (RHN) Satellite Server 52011-04-18

📋Vendor Advisories

1
Red Hat
rhn_satellite: Incorrect mod_rewrite rules (information disclosure, abuse as distributed DoS tool)2011-04-11

💬Community

2
Bugzilla
CVE-2010-1171 CVE-2009-0788 spacewalk-backend various flaws [fedora-all]2011-04-11
Bugzilla
CVE-2009-0788 rhn_satellite: Incorrect mod_rewrite rules (information disclosure, abuse as distributed DoS tool)2009-03-20