CVE-2010-3869
published 2010-11-17CVE-2010-3869: Red Hat Certificate System (RHCS) 7.3 and 8 and Dogtag Certificate System allow remote authenticated users to generate an arbitrary number of certificates by…
PriorityP417medium4CVSS 2.0
AVNACLAuSCNIPAN
EPSS
0.78%
51.9th percentile
Red Hat Certificate System (RHCS) 7.3 and 8 and Dogtag Certificate System allow remote authenticated users to generate an arbitrary number of certificates by replaying a single SCEP one-time PIN.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | certificate_system | — | — |
| redhat | certificate_system | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
System: SCEP one-time PIN reuse
vendor_redhat·2010-11-08·CVSS 4.0
CVE-2010-3869 [MEDIUM] System: SCEP one-time PIN reuse
System: SCEP one-time PIN reuse
Red Hat Certificate System (RHCS) 7.3 and 8 and Dogtag Certificate System allow remote authenticated users to generate an arbitrary number of certificates by replaying a single SCEP one-time PIN.
GHSA
GHSA-5f9q-v927-crw8: Red Hat Certificate System (RHCS) 7
ghsa_unreviewed·2022-05-17
CVE-2010-3869 [MEDIUM] GHSA-5f9q-v927-crw8: Red Hat Certificate System (RHCS) 7
Red Hat Certificate System (RHCS) 7.3 and 8 and Dogtag Certificate System allow remote authenticated users to generate an arbitrary number of certificates by replaying a single SCEP one-time PIN.
No detection rules found.
http://secunia.com/advisories/42181http://securitytracker.com/id?1024697http://www.osvdb.org/69148https://bugzilla.redhat.com/show_bug.cgi?id=648883https://fedorahosted.org/pki/changeset/1246https://rhn.redhat.com/errata/RHSA-2010-0837.htmlhttps://rhn.redhat.com/errata/RHSA-2010-0838.htmlhttp://secunia.com/advisories/42181http://securitytracker.com/id?1024697http://www.osvdb.org/69148https://bugzilla.redhat.com/show_bug.cgi?id=648883https://fedorahosted.org/pki/changeset/1246https://rhn.redhat.com/errata/RHSA-2010-0837.htmlhttps://rhn.redhat.com/errata/RHSA-2010-0838.html
2010-11-17
Published