CVE-2013-4518
published 2019-11-04CVE-2013-4518: RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.26%
17.2th percentile
RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | update_infrastructure | — | — |
| rhui | rhui | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
RHUI: PKI entitlement certificates are world readable
vendor_redhat·2014-08-11·CVSS 5.5
CVE-2013-4518 [MEDIUM] RHUI: PKI entitlement certificates are world readable
RHUI: PKI entitlement certificates are world readable
RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
Statement: Red Hat Update Infrastructure 2.1.3 is now in Production 2 Phase of the support and maintenance life cycle. This has been rated as having Low security impact and is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Update Infrastructure Life Cycle: https://access.redhat.com/support/policy/updates/rhui.
GHSA
GHSA-pv88-mwjw-4mh6: RHUI (Red Hat Update Infrastructure) 2
ghsa_unreviewed·2022-05-05
CVE-2013-4518 [MEDIUM] CWE-200 GHSA-pv88-mwjw-4mh6: RHUI (Red Hat Update Infrastructure) 2
RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates
No detection rules found.
No public exploits indexed.
2019-11-04
Published