CVE Vulnerabilities

CVE-2010-3869

Published: Nov 17, 2010 | Modified: Nov 18, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V3
Ubuntu

Red Hat Certificate System (RHCS) 7.3 and 8 and Dogtag Certificate System allow remote authenticated users to generate an arbitrary number of certificates by replaying a single SCEP one-time PIN.

Affected Software

Name Vendor Start Version End Version
Certificate_system Redhat 7.3 (including) 7.3 (including)
Certificate_system Redhat 8 (including) 8 (including)
Red Hat Certificate System 7.3 RedHat rhpki-ca-0:7.3.0-21.el4 *
Red Hat Certificate System 7.3 RedHat rhpki-common-0:7.3.0-41.el4 *
Red Hat Certificate System 7.3 RedHat rhpki-util-0:7.3.0-21.el4 *
Red Hat Certificate System 8 RedHat pki-ca-0:8.0.7-1.el5pki *
Red Hat Certificate System 8 RedHat pki-common-0:8.0.6-2.el5pki *
Red Hat Certificate System 8 RedHat pki-util-0:8.0.5-1.el5pki *

References