CVE-2018-14666
—CVSS 3.0
7.2 high
EPSS
1%p62
Published
()
Modified
Description
An improper authorization flaw was found in the Smart Class feature of Foreman. An attacker can use it to change configuration of any host registered in Red Hat Satellite, independent of the organization the host belongs to. This flaw affects all Red Hat Satellite 6 versions.
- Vendors
- redhat
- Products
- satellite
- Weakness
- CWE-285, CWE-863
- Vector
- CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.