CVE Database
/

CVE-2012-6137

Back to search

CVE-2012-6137

Published: May 21, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

rhn-migrate-classic-to-rhsm tool in Red Hat subscription-manager does not verify the Red Hat Network Classic server's X.509 certificate when migrating to a Certificate-based Red Hat Network, which allows remote man-in-the-middle attackers to obtain sensitive information such as user credentials.

VendorProductVersions

n/a

n/a

affected
n/a

References

59674
vdb-entry
x_refsource_BID
93058
vdb-entry
x_refsource_OSVDB
1028520
vdb-entry
x_refsource_SECTRACK
53330
third-party-advisory
x_refsource_SECUNIA
RHSA-2013:0788
vendor-advisory
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now