Security Advisory

CVE-2010-1171

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-04-18 17:00:00
Last updated 2024-08-07 01:14:06
Assigner redhat
State PUBLISHED

Description

Red Hat Network (RHN) Satellite 5.3 and 5.4 exposes a dangerous, obsolete XML-RPC API, which allows remote authenticated users to access arbitrary files and cause a denial of service (failed yum operations) via vectors related to configuration and package group (comps.xml) files for channels.