rhn-proxy: may transmit credentials over clear-text when accessing RHN Satellite
Metrics
No CVSS v4.0
Attack Vector Adjacent Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact High
Integrity Impact None
Availability Impact None
User Interaction None
No CVSS v3.0
Access Vector Adjacent Network
Access Complexity Low
Authentication None
Confidentiality Impact Partial
Integrity Impact None
Availability Impact None
AV:A/AC:L/Au:N/C:P/I:N/A:N
This CVE is not in the KEV list.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
| Vendors | Products |
|---|---|
| Redhat |
|
| Package | CPE | Advisory | Released Date |
|---|---|---|---|
| Red Hat Satellite Proxy v 5.6 | |||
| eventReceivers-0:2.20.18-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| gc-0:7.1-8.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| jabberd-0:2.2.8-22.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| jabberd-selinux-0:2.0.1-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| libapreq2-0:2.13-5.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| libgsasl-0:1.4.0-5.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| libntlm-0:1.0-4.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| MessageQueue-0:3.26.9-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| mod_wsgi-0:3.2-3.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| nocpulse-common-0:2.2.7-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| nocpulse-db-perl-0:3.6.5-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| NOCpulsePlugins-0:2.209.6-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| NPalert-0:1.127.12-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| oracle-config-0:1.1-7.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| oracle-instantclient-0:10.2.0-47.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| oracle-instantclient-selinux-0:10.2.0.19-5.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| oracle-selinux-0:0.1.23.35-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-BerkeleyDB-0:0.38-6.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Class-MethodMaker-0:1.12-12.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Class-Singleton-0:1.4-6.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Config-IniFiles-0:2.47-5.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Convert-BinHex-0:1.119-10.1.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Crypt-DES-0:2.05-10.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Crypt-GeneratePassword-0:0.03-15.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-DateTime-0:0.27-10.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-DateTime-Locale-0:0.09-14.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-DateTime-TimeZone-0:0.59-8.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-DBD-Oracle-0:1.62-2.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Email-Date-Format-0:1.002-5.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Error-0:0.15-7.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-FreezeThaw-0:0.43-14.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-HTML-TableExtract-0:1.08-11.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-IO-stringy-0:2.110-10.1.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-List-MoreUtils-0:0.22-10.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-MailTools-0:1.66-6.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-MIME-Lite-0:3.01-6.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-MIME-tools-0:5.427-4.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-MIME-Types-0:1.28-2.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Net-IPv4Addr-0:0.10-7.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Net-LibIDN-0:0.12-3.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Net-SNMP-0:6.0.1-3.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-CLAC-0:1.9.9-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-Debug-0:1.23.17-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-Gritch-0:1.27.11-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-Object-0:1.26.12-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-OracleDB-0:1.28.27-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-PersistentConnection-0:1.10.1-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-Probe-0:1.184.17-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-ProcessPool-0:1.6.1-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-Scheduler-0:1.58.12-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-SetID-0:1.7.1-3.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-NOCpulse-Utils-0:1.14.12-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-Params-Validate-0:0.92-3.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-SOAP-Lite-0:0.710.10-3.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-XML-DOM-0:1.44-1.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-XML-Generator-0:1.01-6.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| perl-XML-RegExp-0:0.03-2.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| ProgAGoGo-0:1.11.6-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| python-debian-0:0.1.16-5.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| python-hashlib-0:20081119-6.el5 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| rhnlib-0:2.5.22-15.el6 | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| rhnpush-0:5.5.65-5.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SatConfig-bootstrap-0:1.11.5-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SatConfig-bootstrap-server-0:1.13.5-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SatConfig-cluster-0:1.54.10-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SatConfig-general-0:1.216.29-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SatConfig-generator-0:2.29.14-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SatConfig-installer-0:3.24.6-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SatConfig-spread-0:1.1.3-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| satellite-branding-0:5.6.0.22-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| scdb-0:1.15.8-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SNMPAlerts-0:0.5.7-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-backend-0:2.0.3-18.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-certs-tools-0:2.0.1-2.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-monitoring-selinux-0:2.0.1-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-proxy-0:2.0.1-8.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-proxy-docs-0:2.0.1-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-proxy-monitoring-0:2.0.1-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-proxy-selinux-0:2.0.1-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-setup-jabberd-0:2.0.1-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-ssl-cert-check-1:2.3-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| spacewalk-web-0:2.0.3-17.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| SputLite-0:1.10.1-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| ssl_bridge-0:1.9.3-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| status_log_acceptor-0:0.12.11-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| tsdb-0:1.27.29-1.el6sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
| udns-0:0.1-1.el5sat | cpe:/a:redhat:network_proxy:5.6::el5 | RHEA-2013:1392 | 2013-10-01T00:00:00Z |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published: 2019-12-02T18:12:41
Updated: 2024-08-06T21:14:16.046Z
Reserved: 2012-10-24T00:00:00
Link: CVE-2012-5562
No data.
Status : Modified
Published: 2019-12-02T19:15:11.027
Modified: 2024-11-21T01:44:53.480
Link: CVE-2012-5562
ReportizFlow