CVE-2015-1777 describes a vulnerability in rhnreg_ks within Red Hat Network Client Tools affecting Red Hat Gluster Storage 2.1 and RHEL 5, 6, and 7. This flaw stems from improper hostname validation in X.509 certificates from SSL servers, enabling remote attackers to disrupt system registration through a man-in-the-middle attack. Rated Medium (CVSS 5.9), the attack requires high complexity but can lead to a high integrity impact, preventing system registration. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:redhat:rhn-client-tools:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.