cbcvebase.
CVE-2010-1507
published 2010-09-03

CVE-2010-1507: WebYaST in yast2-webclient in SUSE Linux Enterprise (SLE) 11 on the WebYaST appliance uses a fixed secret key that is embedded in the appliance's image, which…

PriorityP425medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.12%
79.7th percentile
WebYaST in yast2-webclient in SUSE Linux Enterprise (SLE) 11 on the WebYaST appliance uses a fixed secret key that is embedded in the appliance's image, which allows remote attackers to spoof session cookies by leveraging knowledge of this key.

Affected

1 ranges
VendorProductVersion rangeFixed in
novellsuse_linux
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.