VYPR
Medium severity4.5NVD Advisory· Published Dec 16, 2022· Updated Jun 17, 2026

CVE-2022-4130

CVE-2022-4130

Description

A blind site-to-site request forgery vulnerability was found in Satellite server. It is possible to trigger an external interaction to an attacker's server by modifying the Referer header in an HTTP request of specific resources in the server.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Red Hat/Satellite4 versions
    cpe:2.3:a:redhat:satellite:6.10:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:redhat:satellite:6.10:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:satellite:6.11:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:satellite:6.9:*:*:*:*:*:*:*
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.