Vulnerabilities (CVE)

Filtered by vendor Novell Subscribe
Filtered by product Webyast Appliance
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-1507 1 Novell 2 Suse Linux, Webyast Appliance 2023-12-10 5.0 MEDIUM N/A
WebYaST in yast2-webclient in SUSE Linux Enterprise (SLE) 11 on the WebYaST appliance uses a fixed secret key that is embedded in the appliance's image, which allows remote attackers to spoof session cookies by leveraging knowledge of this key.