CVE-2012-1145
Redhat Satellite - Authentication Bypass
Title source: ruleDescription
spacewalk-backend in Red Hat Network Satellite 5.4 on Red Hat Enterprise Linux 6 does not properly authorize or authenticate uploads to the NULL organization when mod_wsgi is used, which allows remote attackers to cause a denial of service (/var partition disk consumption and failed updates) via a large number of package uploads.
References (6)
Scores
EPSS
0.0179
EPSS Percentile
82.6%
Classification
CWE
CWE-287
Status
draft
Affected Products (1)
redhat/satellite
Timeline
Published
Jun 16, 2012
Tracked Since
Feb 18, 2026