CVE-2023-4886
03.10.2023, 15:15
A sensitive information exposure vulnerability was found in foreman. Contents of tomcat's server.xml file, which contain passwords to candlepin's keystore and truststore, were found to be world readable.Enginsight
Vendor | Product | Version |
---|---|---|
theforeman | foreman | 𝑥 < 3.8.0 |
redhat | satellite | 6.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References