Vulnerability Details CVE-2018-12472
A improper authentication using the HOST header in SUSE Linux SMT allows remote attackers to spoof a sibling server. Affected releases are SUSE Linux SMT: versions prior to 3.0.37.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 58.5%
CVSS Severity
CVSS v3 Score 7.3
CVSS v2 Score 6.4
Products affected by CVE-2018-12472
-
cpe:2.3:a:suse:subscription_management_tool:0.0.1
-
cpe:2.3:a:suse:subscription_management_tool:0.0.10
-
cpe:2.3:a:suse:subscription_management_tool:0.0.14
-
cpe:2.3:a:suse:subscription_management_tool:0.0.15
-
cpe:2.3:a:suse:subscription_management_tool:0.0.16
-
cpe:2.3:a:suse:subscription_management_tool:0.0.17
-
cpe:2.3:a:suse:subscription_management_tool:0.0.18
-
cpe:2.3:a:suse:subscription_management_tool:0.0.2
-
cpe:2.3:a:suse:subscription_management_tool:0.0.3
-
cpe:2.3:a:suse:subscription_management_tool:0.0.4
-
cpe:2.3:a:suse:subscription_management_tool:0.0.5
-
cpe:2.3:a:suse:subscription_management_tool:0.0.6
-
cpe:2.3:a:suse:subscription_management_tool:0.0.7
-
cpe:2.3:a:suse:subscription_management_tool:0.0.8
-
cpe:2.3:a:suse:subscription_management_tool:0.0.9
-
cpe:2.3:a:suse:subscription_management_tool:1.0.0
-
cpe:2.3:a:suse:subscription_management_tool:1.0.1
-
cpe:2.3:a:suse:subscription_management_tool:1.0.10
-
cpe:2.3:a:suse:subscription_management_tool:1.0.11
-
cpe:2.3:a:suse:subscription_management_tool:1.0.17
-
cpe:2.3:a:suse:subscription_management_tool:1.0.18
-
cpe:2.3:a:suse:subscription_management_tool:1.0.2
-
cpe:2.3:a:suse:subscription_management_tool:1.0.3
-
cpe:2.3:a:suse:subscription_management_tool:1.0.4
-
cpe:2.3:a:suse:subscription_management_tool:1.0.5
-
cpe:2.3:a:suse:subscription_management_tool:1.0.6
-
cpe:2.3:a:suse:subscription_management_tool:1.0.7
-
cpe:2.3:a:suse:subscription_management_tool:1.0.8
-
cpe:2.3:a:suse:subscription_management_tool:1.0.9
-
cpe:2.3:a:suse:subscription_management_tool:1.1.0
-
cpe:2.3:a:suse:subscription_management_tool:1.1.1
-
cpe:2.3:a:suse:subscription_management_tool:1.1.10
-
cpe:2.3:a:suse:subscription_management_tool:1.1.12
-
cpe:2.3:a:suse:subscription_management_tool:1.1.13
-
cpe:2.3:a:suse:subscription_management_tool:1.1.14
-
cpe:2.3:a:suse:subscription_management_tool:1.1.15
-
cpe:2.3:a:suse:subscription_management_tool:1.1.16
-
cpe:2.3:a:suse:subscription_management_tool:1.1.17
-
cpe:2.3:a:suse:subscription_management_tool:1.1.18
-
cpe:2.3:a:suse:subscription_management_tool:1.1.19
-
cpe:2.3:a:suse:subscription_management_tool:1.1.2
-
cpe:2.3:a:suse:subscription_management_tool:1.1.20
-
cpe:2.3:a:suse:subscription_management_tool:1.1.21
-
cpe:2.3:a:suse:subscription_management_tool:1.1.22
-
cpe:2.3:a:suse:subscription_management_tool:1.1.23
-
cpe:2.3:a:suse:subscription_management_tool:1.1.24
-
cpe:2.3:a:suse:subscription_management_tool:1.1.25
-
cpe:2.3:a:suse:subscription_management_tool:1.1.26
-
cpe:2.3:a:suse:subscription_management_tool:1.1.3
-
cpe:2.3:a:suse:subscription_management_tool:1.1.4
-
cpe:2.3:a:suse:subscription_management_tool:1.1.5
-
cpe:2.3:a:suse:subscription_management_tool:1.1.6
-
cpe:2.3:a:suse:subscription_management_tool:1.1.7
-
cpe:2.3:a:suse:subscription_management_tool:1.1.8
-
cpe:2.3:a:suse:subscription_management_tool:1.1.9
-
cpe:2.3:a:suse:subscription_management_tool:1.2.0
-
cpe:2.3:a:suse:subscription_management_tool:1.2.3
-
cpe:2.3:a:suse:subscription_management_tool:2.0.1
-
cpe:2.3:a:suse:subscription_management_tool:2.0.16
-
cpe:2.3:a:suse:subscription_management_tool:2.0.17
-
cpe:2.3:a:suse:subscription_management_tool:2.0.18
-
cpe:2.3:a:suse:subscription_management_tool:2.0.3
-
cpe:2.3:a:suse:subscription_management_tool:2.0.31
-
cpe:2.3:a:suse:subscription_management_tool:2.0.4
-
cpe:2.3:a:suse:subscription_management_tool:2.0.7
-
cpe:2.3:a:suse:subscription_management_tool:2.13.0
-
cpe:2.3:a:suse:subscription_management_tool:2.13.1
-
cpe:2.3:a:suse:subscription_management_tool:2.13.10
-
cpe:2.3:a:suse:subscription_management_tool:2.13.11
-
cpe:2.3:a:suse:subscription_management_tool:2.13.12
-
cpe:2.3:a:suse:subscription_management_tool:2.13.13
-
cpe:2.3:a:suse:subscription_management_tool:2.13.14
-
cpe:2.3:a:suse:subscription_management_tool:2.13.15
-
cpe:2.3:a:suse:subscription_management_tool:2.13.16
-
cpe:2.3:a:suse:subscription_management_tool:2.13.17
-
cpe:2.3:a:suse:subscription_management_tool:2.13.18
-
cpe:2.3:a:suse:subscription_management_tool:2.13.19
-
cpe:2.3:a:suse:subscription_management_tool:2.13.2
-
cpe:2.3:a:suse:subscription_management_tool:2.13.20
-
cpe:2.3:a:suse:subscription_management_tool:2.13.4
-
cpe:2.3:a:suse:subscription_management_tool:2.13.5
-
cpe:2.3:a:suse:subscription_management_tool:2.13.6
-
cpe:2.3:a:suse:subscription_management_tool:2.13.7
-
cpe:2.3:a:suse:subscription_management_tool:2.13.8
-
cpe:2.3:a:suse:subscription_management_tool:2.13.9
-
cpe:2.3:a:suse:subscription_management_tool:2.17.0
-
cpe:2.3:a:suse:subscription_management_tool:2.17.1
-
cpe:2.3:a:suse:subscription_management_tool:2.17.10
-
cpe:2.3:a:suse:subscription_management_tool:2.17.11
-
cpe:2.3:a:suse:subscription_management_tool:2.17.12
-
cpe:2.3:a:suse:subscription_management_tool:2.17.13
-
cpe:2.3:a:suse:subscription_management_tool:2.17.14
-
cpe:2.3:a:suse:subscription_management_tool:2.17.15
-
cpe:2.3:a:suse:subscription_management_tool:2.17.16
-
cpe:2.3:a:suse:subscription_management_tool:2.17.17
-
cpe:2.3:a:suse:subscription_management_tool:2.17.18
-
cpe:2.3:a:suse:subscription_management_tool:2.17.19
-
cpe:2.3:a:suse:subscription_management_tool:2.17.2
-
cpe:2.3:a:suse:subscription_management_tool:2.17.20
-
cpe:2.3:a:suse:subscription_management_tool:2.17.3
-
cpe:2.3:a:suse:subscription_management_tool:2.17.4
-
cpe:2.3:a:suse:subscription_management_tool:2.17.5
-
cpe:2.3:a:suse:subscription_management_tool:2.17.6
-
cpe:2.3:a:suse:subscription_management_tool:2.17.7
-
cpe:2.3:a:suse:subscription_management_tool:2.17.8
-
cpe:2.3:a:suse:subscription_management_tool:2.17.9
-
cpe:2.3:a:suse:subscription_management_tool:3.0.1
-
cpe:2.3:a:suse:subscription_management_tool:3.0.11
-
cpe:2.3:a:suse:subscription_management_tool:3.0.2
-
cpe:2.3:a:suse:subscription_management_tool:3.0.29
-
cpe:2.3:a:suse:subscription_management_tool:3.0.30
-
cpe:2.3:a:suse:subscription_management_tool:3.0.31
-
cpe:2.3:a:suse:subscription_management_tool:3.0.32
-
cpe:2.3:a:suse:subscription_management_tool:3.0.8
-
cpe:2.3:a:suse:subscription_management_tool:3.0.9