First published: Thu Jan 02 2020(Updated: )
Versions of Katello as shipped with Red Hat Subscription Asset Manager 1.4 are vulnerable to a XSS via HTML in the systems name when registering.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Subscription Asset Manager | =1.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2014-0183.
The severity of CVE-2014-0183 is medium.
Versions of Katello as shipped with Red Hat Subscription Asset Manager 1.4 are affected by CVE-2014-0183.
The CWE ID of CVE-2014-0183 is 79.
To fix the vulnerability CVE-2014-0183, update Katello to a version that is not affected by this vulnerability.