CVE-2018-12472
04.10.2018, 14:29
A improper authentication using the HOST header in SUSE Linux SMT allows remote attackers to spoof a sibling server. Affected releases are SUSE Linux SMT: versions prior to 3.0.37.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| suse | subscription_management_tool | 𝑥 < 3.0.37 |
𝑥
= Vulnerable software versions
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| perl-File-Touch |
| ||||||||||||||||
| res-signingkeys |
| ||||||||||||||||
| smt |
| ||||||||||||||||
| smt-ha |
| ||||||||||||||||
| smt-support |
| ||||||||||||||||
| yast2-smt |
|
Common Weakness Enumeration