Redhat Certification vulnerabilities
5 known vulnerabilities affecting redhat/certification.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH3
Vulnerabilities
Page 1 of 1
CVE-2018-10867CRITICALCVSS 9.1v7.02021-05-26
CVE-2018-10867 [CRITICAL] CWE-552 CVE-2018-10867: Files are accessible without restrictions from the /update/results page of redhat-certification 7 pa
Files are accessible without restrictions from the /update/results page of redhat-certification 7 package, allowing an attacker to remove any file accessible by the apached user.
nvd
CVE-2018-10866CRITICALCVSS 9.1v7.02021-05-26
CVE-2018-10866 [CRITICAL] CWE-862 CVE-2018-10866: It was discovered that the /configuration view of redhat-certification 7 does not perform an authori
It was discovered that the /configuration view of redhat-certification 7 does not perform an authorization check and it allows an unauthenticated user to remove a "system" file, that is an xml file with host related information, not belonging to him.
nvd
CVE-2018-10863HIGHCVSS 7.5v7.02021-05-26
CVE-2018-10863 [HIGH] CWE-552 CVE-2018-10863: It was discovered that redhat-certification 7 is not properly configured and it lists all files and
It was discovered that redhat-certification 7 is not properly configured and it lists all files and directories in the /var/www/rhcert/store/transfer directory, through the /rhcert-transfer URL. An unauthorized attacker may use this flaw to gather sensible information.
nvd
CVE-2018-10868HIGHCVSS 7.5v7.02021-05-26
CVE-2018-10868 [HIGH] CWE-400 CVE-2018-10868: redhat-certification 7 does not properly restrict the number of recursive definitions of entities in
redhat-certification 7 does not properly restrict the number of recursive definitions of entities in XML documents, allowing an unauthenticated user to run a "Billion Laugh Attack" by replying to XMLRPC methods when getting the status of an host.
nvd
CVE-2018-10865HIGHCVSS 7.5v7.02021-05-26
CVE-2018-10865 [HIGH] CWE-862 CVE-2018-10865: It was discovered that the /configuration view of redhat-certification 7 does not perform an authori
It was discovered that the /configuration view of redhat-certification 7 does not perform an authorization check and it allows an unauthenticated user to call a "restart" RPC method on any host accessible by the system, even if not belonging to him.
nvd