Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.71213
Category:Red Hat Local Security Checks
Title:RedHat Security Advisory RHSA-2012:0475
Summary:NOSUMMARY
Description:Description:
The remote host is missing updates announced in
advisory RHSA-2012:0475.

Red Hat Enterprise MRG (Messaging, Realtime, and Grid) is a next-generation
IT infrastructure for enterprise computing. MRG offers increased
performance, reliability, interoperability, and faster computing for
enterprise customers.

Several cross-site scripting (XSS) flaws were found in the MRG Management
Console (Cumin). An authorized user on the local network could use these
flaws to perform cross-site scripting attacks against MRG Management
Console users. Note: Refer to the MRG Messaging User Guide for information
on configuring authentication and authorization in the MRG Messaging
broker. (CVE-2012-1575)

Users of Red Hat Enterprise MRG Management Console are advised to upgrade
to this updated package, which corrects these issues. The MRG Management
Console must be restarted (service cumin restart) for this update to take
effect.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2012-0475.html

Risk factor : Medium

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2012-1575
BugTraq ID: 53000
http://www.securityfocus.com/bid/53000
https://fedorahosted.org/pipermail/cumin-developers/2012-March/000796.html
RedHat Security Advisories: RHSA-2012:0476
http://rhn.redhat.com/errata/RHSA-2012-0476.html
RedHat Security Advisories: RHSA-2012:0477
http://rhn.redhat.com/errata/RHSA-2012-0477.html
http://www.securitytracker.com/id?1026921
http://secunia.com/advisories/48810
http://secunia.com/advisories/48829
XForce ISS Database: cumin-redhat-unspec-xss(74844)
https://exchange.xforce.ibmcloud.com/vulnerabilities/74844
CopyrightCopyright (c) 2012 E-Soft Inc. http://www.securityspace.com

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.