Uyuni-project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    0
    Critical Level Threats
    1
    High Level Threats
    2
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2022-43754

    SUMA/UYUNI reflected cross site scripting in /rhn/audit/scap/Search.do

    Last Modified: Apr 30, 2025
    Published: Nov 10, 2022

    CVE-2022-43753

    SUMA/UYUNI arbitrary file disclosure vulnerability in ScapResultDownload

    Last Modified: Apr 30, 2025
    Published: Nov 10, 2022

    CVE-2022-31255

    SUMA/UYUNI directory path traversal vulnerability in CobblerSnipperViewAction

    Last Modified: Apr 30, 2025
    Published: Nov 10, 2022

    CVE-2021-40348

    Spacewalk 2.10, and derivatives such as Uyuni 2021.08, allows code injection. rhn-config-satellite.pl doesn't sanitize the configuration filename used to append Spacewalk-specific key-value pair. The script is intended to be run by the tomcat user account with Sudo, according to the installation setup. This can lead to the ability of an attacker to use --option to append arbitrary code to a root-owned file that eventually will be executed by the system. This is fixed in Uyuni spacewalk-admin 4.3.2-1.

    Last Modified: Nov 21, 2024
    Published: Nov 01, 2021
    Items Per Page
    Uyuni-Project Vulnerabilities & Security CVEs | CVE-DB