ZeroHour

CVE-2021-3590

CVSS 3.1
8.8 high
EPSS
<1%p50
Published
()
Modified
Description

A flaw was found in Foreman project. A credential leak was identified which will expose Azure Compute Profile password through JSON of the API output. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Vendors
theforemanredhat
Products
foreman, satellite
Weakness
CWE-200, CWE-319
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.