Vulnerabilities > Redhat > Spacewalk > 2.9

DATE CVE VULNERABILITY TITLE RISK
2020-02-17 CVE-2020-1693 XXE vulnerability in Redhat Spacewalk 1.6/2.6/2.9
A flaw was found in Spacewalk up to version 2.9 where it was vulnerable to XML internal entity attacks via the /rpc/api endpoint.
network
low complexity
redhat CWE-611
critical
9.8