First published: Thu Oct 05 2017(Updated: )
Red Hat Satellite before 6.5 is vulnerable to a XSS in discovery rule when you are entering filter and you use autocomplete functionality.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Network Satellite Server | <6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-12175 is classified as a medium severity vulnerability due to its potential for cross-site scripting (XSS).
To address CVE-2017-12175, upgrade Red Hat Satellite to version 6.5 or later to eliminate the XSS vulnerability.
CVE-2017-12175 is a cross-site scripting (XSS) vulnerability affecting the autocomplete functionality in discovery rules.
CVE-2017-12175 affects all versions of Red Hat Satellite prior to 6.5.
The CVE-2017-12175 vulnerability was reported by Jan Hutař of Red Hat.