Vulnerabilidades em spacewalkproject
2 resultadosAnálise Vexday
O Spacewalk Project apresenta baixo volume de vulnerabilidades conhecidas (2 CVEs), sem registros de exploração ativa ou críticas. A fraqueza dominante identificada é traversal de diretório (CWE-22), com nenhuma publicação recente nos últimos 90 dias, indicando risco residual estável e controlável.
CVE-2019-10137HIGHA path traversal flaw was found in spacewalk-proxy, all versions through 2.9, in the way the proxy processes cached client tokens. A remote,EPSS 3.1%CVE-2019-10136MEDIUMIt was found that Spacewalk, all versions through 2.9, did not safely compute client token checksums. An attacker with a valid, but expired,EPSS 0.6%