A Cross-site scripting issue was discovered in RHN when searching software channels. This issue affects the live hosted RHN as well as Red Hat Network Satellite.
Fixed in hosted in 5.0.4 BZ: https://bugzilla.redhat.com/show_bug.cgi?id=306371
doesn't affect sat 4.2 or lower because they use perl based search
this issue did not affect satellite 5.1 removing embargo and pushing update for satellite 5.0.2
This issue was addressed in: Red Hat Network Satellite Server: http://rhn.redhat.com/errata/RHSA-2008-0261.html