XSS Vulnerability in Katello Registration System Name Field

XSS Vulnerability in Katello Registration System Name Field

CVE-2014-0183 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Versions of Katello as shipped with Red Hat Subscription Asset Manager 1.4 are vulnerable to a XSS via HTML in the systems name when registering.

Learn more about our Cyber Security Assurance Subscription.