suse · CVE-2014-7811

Quick triage

Priority: medium Published: 2021-05-30 13:23:18 UTC Updated: 2025-11-05 05:03:12 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2014-7811 severity moderate: SUSE including 352 source package names (amazon/suse-sles-15-sp1-chost-byos-v20210304-hvm-ssd-x86_64, amazon/suse-sles-15-sp1-chost-byos-v20220127-hvm-ssd-x86_64, …), 352 product×package rows across 3 product lines (SUSE Manager 1.7, SUSE Manager 2.1, chost): Known Affected 231, Fixed 121.

Description:

Multiple cross-site scripting (XSS) vulnerabilities in Spacewalk and Red Hat Network (RHN) Satellite before 5.7.0 allow remote authenticated users to inject arbitrary web script or HTML via crafted XML data to the REST API.

cvelogic Threat Intelligence