CVE-2016-7047
11.09.2018, 13:29
A flaw was found in the CloudForms API before 5.6.3.0, 5.7.3.1 and 5.8.1.2. A user with permissions to use the MiqReportResults capability within the API could potentially view data from other tenants or groups to which they should not have access.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | cloudforms | 4.2 |
redhat | cloudforms | 4.5 |
redhat | cloudforms_management_engine | 5.6 ≤ 𝑥 < 5.6.3.0 |
redhat | cloudforms_management_engine | 5.7 ≤ 𝑥 < 5.7.3.1 |
redhat | cloudforms_management_engine | 5.8 ≤ 𝑥 < 5.8.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References