katello-headpin
by Red Hat
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2014-0026 | Med | 0.42 | 6.5 | 0.00 | Dec 11, 2019 | katello-headpin is vulnerable to CSRF in REST API | ||
| CVE-2014-0029 | Med | 0.40 | 6.1 | 0.01 | Oct 16, 2017 | Multiple cross-site scripting (XSS) vulnerabilities in the SAM web application in Red Hat katello-headpin allow remote attackers to inject arbitrary web script or HTML via unspecified parameters. |
- risk 0.42cvss 6.5epss 0.00
katello-headpin is vulnerable to CSRF in REST API
- risk 0.40cvss 6.1epss 0.01
Multiple cross-site scripting (XSS) vulnerabilities in the SAM web application in Red Hat katello-headpin allow remote attackers to inject arbitrary web script or HTML via unspecified parameters.