{"id":"CVE-2012-3503","aliases":[],"url":"https://o3.security/vulnerability/CVE-2012-3503","summary":"Katello uses hard coded credential","details":"The installation script in Katello 1.0 and earlier does not properly generate the `Application.config.secret_token` value, which causes each default installation to have the same secret token, and allows remote attackers to authenticate to the CloudForms System Engine web interface as an arbitrary user by creating a cookie using the default `secret_token`.","published":"2022-05-17T05:13:13Z","modified":"2024-04-11T15:43:37Z","cvss":{"score":9.8,"severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},"epss":{"score":0.03002,"percentile":0.86342,"asOf":"2026-08-22"},"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"RubyGems","name":"katello","fixedVersion":"1.0.6"},{"ecosystem":"RubyGems","name":"katello","fixedVersion":"1.1.7"}],"fix":{"url":"https://github.com/Katello/katello/pull/499","label":"Katello/katello#499"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2012-3503"},{"type":"WEB","url":"https://github.com/Katello/katello/pull/499"},{"type":"WEB","url":"https://github.com/Katello/katello/commit/7c256fef9d75029d0ffff58ff1dcda915056d3a3"},{"type":"PACKAGE","url":"https://github.com/Katello/katello"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-5xv2-q475-rwrh"},{"type":"WEB","url":"https://github.com/rubysec/ruby-advisory-db/blob/master/gems/katello/CVE-2012-3503.yml"},{"type":"WEB","url":"https://web.archive.org/web/20140806122239/http://secunia.com/advisories/50344"},{"type":"WEB","url":"https://web.archive.org/web/20200229120740/http://www.securityfocus.com/bid/55140"},{"type":"WEB","url":"http://rhn.redhat.com/errata/RHSA-2012-1186.html"},{"type":"WEB","url":"http://rhn.redhat.com/errata/RHSA-2012-1187.html"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2024-04-11T15:43:37Z"}}