CVE-2018-1097
04.04.2018, 21:29
A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.Enginsight
Vendor | Product | Version |
---|---|---|
theforeman | foreman | 𝑥 < 1.6.1 |
redhat | satellite | 6.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References