Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Red Hat Certificate System (RHCS) before 8.1.1 and Dogtag Certificate System does not properly check certificate revocation requests made through the web interface, which allows remote attackers with permissions to revoke end entity certificates to revoke the Certificate Authority (CA) certificate.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Red Hat Certificate System 安全绕过漏洞
Vulnerability Description
Red Hat Certificate System(RHCS)是美国红帽(Red Hat)公司的一套认证系统。该系统提供强大的安全框架来确保用户的身份以及通讯的私密性。 Red Hat Certificate System 8.1.1之前版本中存在安全绕过漏洞,该漏洞源于未正确检查通过WEB接口执行的证书吊销请求。攻击者可利用该漏洞吊销Certificate Authority (CA)证书,绕过某些安全限制,在不知情用户浏览器执行任意脚本代码,在受影响应用程序中执行某些管理权限操作。
CVSS Information
N/A
Vulnerability Type
N/A