CVE-2012-0059

A flaw was found in Spacewalk-backend. This information disclosure vulnerability occurs when a system registration XML-RPC call fails, causing cleartext user passwords to be included in error messages. Remote administrators can exploit this by reading server logs and emails, leading to the unauthorized disclosure of user passwords.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:redhat:network_proxy:5.4:*:*:*:*:*:*:*
cpe:2.3:a:redhat:satellite:5.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-02-05 18:55

Updated : 2026-06-16 23:36


NVD link : CVE-2012-0059

Mitre link : CVE-2012-0059

CVE.ORG link : CVE-2012-0059


JSON object : View

Products Affected

redhat

  • satellite
  • network_proxy
CWE
CWE-209

Generation of Error Message Containing Sensitive Information

CWE-310

Cryptographic Issues