Beveiligingsadvies

CVE-2014-8183

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2019-08-01 13:38:05
Laatst bijgewerkt 2024-08-06 13:10:51
Toegewezen door redhat
CVSS-score 7.4
Status PUBLISHED

Beschrijving

It was found that foreman, versions 1.x.x before 1.15.6, in Satellite 6 did not properly enforce access controls on certain resources. An attacker with access to the API and knowledge of the resource name can access resources in other organizations.