Loading
Candlepin in Red Hat Subscription Asset Manager 1.0 through 1.3 uses a weak authentication scheme when the configuration file does not specify a scheme, which has unspecified impact and attack vectors.
Use CWE-287, Redhat vendor hub and Subscription Asset Manager product page to widen CVE-2013-6439 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2014-0130, CVE-2015-7501 and CVE-2012-6685 for nearby disclosures in the same product family.