Red Hat Bugzilla – Bug 1059433
CVE-2014-0029 katello-headpin: Multiple XSS
Last modified: 2014-11-10 04:35:54 EST
Hui Wang and Keqin Hong of Red Hat report: SAM web application is vulnerable to cross site scripting. An attacker can use XSS to send the malicious script that will be executed to an unsuspecting user.
Acknowledgements: This issue was discovered by Hui Wang and Yu Zheng of Red Hat.