A blind site-to-site request forgery vulnerability was found in Satellite server. It is possible to trigger an external interaction to an attacker's server by modifying the Referer header in an HTTP request of specific resources in the server.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2022-12-16T00:00:00

Updated: 2024-08-03T01:27:54.472Z

Reserved: 2022-11-23T00:00:00

Link: CVE-2022-4130

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-12-16T16:15:25.173

Modified: 2023-02-06T18:00:55.870

Link: CVE-2022-4130

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-01-16T00:00:00Z

Links: CVE-2022-4130 - Bugzilla