CVE-2017-7470: Red Hat Satellite

Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.

It was found that spacewalk-channel can be used by a non-admin user or disabled users to perform administrative tasks due to an incorrect authorization check in backend/server/rhnChannel.py.

Affected products

  • Red Hat Satellite: version 5.6 only; version 5.7 only
  • Red Hat Spacewalk: affected versions not specified

Published 2018-07-27. Last modified 2026-06-17.