Dogtag Certificate System Dogtag PKI是Dogtag Certificate System组织的一款公钥基础设施证书管理软件。 Dogtag Certificate System Dogtag PKI存在授权问题漏洞,该漏洞源于CA续订请求路径未执行基于领域的授权检查,允许已认证的用户(有权访问一个领域)导致属于不同领域的证书被续订而无需该领域的授权。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Certificate System 10 | any |
affected |
| Red Hat | Red Hat Certificate System 11 | any |
affected |
| Red Hat | Red Hat Certificate System 9 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 10 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 6 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 7 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8 | any |
affected |
| Red Hat | Red Hat Enterprise Linux 9 | any |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Certificate System 10 | - |
cpe:/a:redhat:certificate_system:10
|
|
| Red Hat | Red Hat Certificate System 11 | - |
cpe:/a:redhat:certificate_system:11
|
|
| Red Hat | Red Hat Certificate System 9 | - |
cpe:/a:redhat:certificate_system:9
|
|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-17107 | 8.5 HIGH | Cluster-proxy: impersonation-header injection grants cluster-admin on every managed cluste |
| CVE-2026-66337 | 6.5 MEDIUM | Libsoup: libsoup: heap buffer over-read via integer underflow in soup_filter_input_stream_ |
| CVE-2026-66339 | 6.5 MEDIUM | Libsoup: libsoup: proxy credentials leak to destination server via proxy-authorization hea |
| CVE-2026-17059 | 6.5 MEDIUM | Keycloak-services: keycloak-services: information disclosure via role-users endpoint bypas |
| CVE-2026-17048 | 5.5 MEDIUM | Keycloak-services: keycloak-services: vault-resolved rotated client secrets leaked via adm |
| CVE-2026-16743 | 5.5 MEDIUM | Accountsservice: accountsservice: arbitrary file read via seticonfile for systemd-homed us |
| CVE-2026-16730 | 5.5 MEDIUM | Dbus-broker: dbus-broker: session bus denial of service via emfile during peer setup |
| CVE-2026-16910 | 5.5 MEDIUM | Quay: ssrf in red hat quay notification webhooks (slack/generic) |
| CVE-2026-66338 | 5.4 MEDIUM | Libsoup: libsoup: http request smuggling via permissive chunk-size parsing in soup_body_in |
No comments yet