ZeroHour

CVE-2018-14666

CVSS 3.0
7.2 high
EPSS
1%p62
Published
()
Modified
Description

An improper authorization flaw was found in the Smart Class feature of Foreman. An attacker can use it to change configuration of any host registered in Red Hat Satellite, independent of the organization the host belongs to. This flaw affects all Red Hat Satellite 6 versions.

Vendors
redhat
Products
satellite
Weakness
CWE-285, CWE-863
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.