CVE-2012-0435: Suse Webyast

Medium severity, CVSS 5.8. EPSS: 2.1% chance of exploitation in the next 30 days.

SUSE WebYaST before 1.2 0.2.63-0.6.1 allows remote attackers to modify the hosts list, and subsequently conduct man-in-the-middle attacks, via a crafted /host request on TCP port 4984.

Affected products

  • Suse Webyast: version 1.2 only

Published 2013-01-26. Last modified 2026-06-16.