CVE-2012-0435: Medium severity novell webyast appliance vulnerability
Published Jan 26, 2013
·Updated
SUSE WebYaST before 1.2 0.2.63-0.6.1 allows remote attackers to modify the hosts list, and subsequently conduct man-in-the-middle attacks, via a crafted /host request on TCP port 4984.
Affected Software
1 affected component
SUSE WebYaST=1.2
Event History
Jan 26, 2013
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-0435?
CVE-2012-0435 has a high severity rating due to the potential for remote attackers to conduct man-in-the-middle attacks.
2
How do I fix CVE-2012-0435?
To fix CVE-2012-0435, update SUSE WebYaST to version 1.2 0.2.63-0.6.1 or later.
3
What are the risks associated with CVE-2012-0435?
The risks of CVE-2012-0435 include unauthorized modification of the hosts list and exposure to man-in-the-middle attacks.
4
Which versions of SUSE WebYaST are affected by CVE-2012-0435?
SUSE WebYaST versions before 1.2 0.2.63-0.6.1 are affected by CVE-2012-0435.
5
How does CVE-2012-0435 impact network security?
CVE-2012-0435 impacts network security by allowing attackers to intercept and modify communications between clients and servers.