CVE-2017-7537
published 2018-07-26CVE-2017-7537: It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10.6.4. An…
PriorityP344high7.5CVSS 3.0
AVNACLPRNUINSUCNIHAN
EPSS
1.46%
70.7th percentile
It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10.6.4. An attacker could potentially use this flaw to bypass the regular authentication process and trick the CA server into issuing certificates.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | dogtag-pki | < dogtag-pki 10.3.5+12-5 (bullseye) | dogtag-pki 10.3.5+12-5 (bullseye) |
| dogtag_pki | pki-core | — | — |
| dogtagpki | dogtagpki | < 10.6.4 | 10.6.4 |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv7.5HIGH
vendor_debian5.9MEDIUM
vendor_redhat5.9MEDIUM
vendor_ubuntu5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
dogtag-pki vulnerabilities
osv·2024-12-10·CVSS 7.5
CVE-2017-7537 [HIGH] dogtag-pki vulnerabilities
dogtag-pki vulnerabilities
Christina Fu discovered that Dogtag PKI accidentally enabled a mock
authentication plugin by default. An attacker could potentially use
this flaw to bypass the regular authentication process and trick the
CA server into issuing certificates. This issue only affected Ubuntu
16.04 LTS. (CVE-2017-7537)
It was discovered that Dogtag PKI did not properly sanitize user
input. An attacker could possibly use this issue to perform cross site
scripting and obtain sensitive information. This issue only affected
Ubuntu 22.04 LTS. (CVE-2020-25715)
It was discovered that the XML parser did not properly handle entity
expansion. A remote attacker could potentially retrieve the content of
arbitrary files by sending specially crafted HTTP requests. This issue
only affected Ubun
GHSA
GHSA-x46g-cxp8-8wjm: It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10
ghsa_unreviewed·2022-05-13
CVE-2017-7537 [HIGH] CWE-798 GHSA-x46g-cxp8-8wjm: It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10
It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10.6.4. An attacker could potentially use this flaw to bypass the regular authentication process and trick the CA server into issuing certificates.
OSV
CVE-2017-7537: It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10
osv·2018-07-26·CVSS 7.5
CVE-2017-7537 [HIGH] CVE-2017-7537: It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10
It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10.6.4. An attacker could potentially use this flaw to bypass the regular authentication process and trick the CA server into issuing certificates.
Ubuntu
Dogtag PKI vulnerabilities
vendor_ubuntu·2024-12-10·CVSS 5.9
CVE-2020-25715 [MEDIUM] Dogtag PKI vulnerabilities
Title: Dogtag PKI vulnerabilities
Summary: Several security issues were fixed in dogtag-pki.
Christina Fu discovered that Dogtag PKI accidentally enabled a mock
authentication plugin by default. An attacker could potentially use
this flaw to bypass the regular authentication process and trick the
CA server into issuing certificates. This issue only affected Ubuntu
16.04 LTS. (CVE-2017-7537)
It was discovered that Dogtag PKI did not properly sanitize user
input. An attacker could possibly use this issue to perform cross site
scripting and obtain sensitive information. This issue only affected
Ubuntu 22.04 LTS. (CVE-2020-25715)
It was discovered that the XML parser did not properly handle entity
expansion. A remote attacker could potentially retrieve the content of
arbitrary files by sen
Red Hat
pki-core: mock CMC authentication plugin with hardcoded secret enabled by default
vendor_redhat·2017-07-21·CVSS 5.9
CVE-2017-7537 [MEDIUM] CWE-287 pki-core: mock CMC authentication plugin with hardcoded secret enabled by default
pki-core: mock CMC authentication plugin with hardcoded secret enabled by default
It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10.6.4. An attacker could potentially use this flaw to bypass the regular authentication process and trick the CA server into issuing certificates.
It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package. An attacker could potentially use this flaw to bypass the regular authentication process and trick the CA server into issuing certificates.
Package: pki-core (Red Hat Certificate System 9) - Not affected
Package: pki-core (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2017-7537: dogtag-pki - It was found that a mock CMC authentication plugin with a hardcoded secret was a...
vendor_debian·2017·CVSS 5.9
CVE-2017-7537 [MEDIUM] CVE-2017-7537: dogtag-pki - It was found that a mock CMC authentication plugin with a hardcoded secret was a...
It was found that a mock CMC authentication plugin with a hardcoded secret was accidentally enabled by default in the pki-core package before 10.6.4. An attacker could potentially use this flaw to bypass the regular authentication process and trick the CA server into issuing certificates.
Scope: local
bullseye: resolved (fixed in 10.3.5+12-5)
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2017:2335https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7537https://github.com/dogtagpki/pki/commit/876d13c6d20e7e1235b9https://access.redhat.com/errata/RHSA-2017:2335https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-7537https://github.com/dogtagpki/pki/commit/876d13c6d20e7e1235b9
2018-07-26
Published