Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-2143

The users controller in Katello 1.5.0-14 and earlier, and Red Hat Satellite, does not check authorization for the update_roles action, which allows remote authenticated users to gain privileges by setting a user account to an administrator account.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.64
EPSS Ranking 98.3%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2013-2143


Contact Us

Shodan ® - All rights reserved