CVE-2018-14666

An improper authorization flaw was found in the Smart Class feature of Foreman. An attacker can use it to change configuration of any host registered in Red Hat Satellite, independent of the organization the host belongs to. This flaw affects all Red Hat Satellite 6 versions.
References
Link Resource
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-14666 Issue Tracking Vendor Advisory
http://www.securityfocus.com/bid/106490 Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:redhat:satellite:*:*:*:*:*:*:*:*

Information

Published : 2019-01-22 07:29

Updated : 2019-10-09 16:35


NVD link : CVE-2018-14666

Mitre link : CVE-2018-14666


JSON object : View

CWE
CWE-863

Incorrect Authorization

Advertisement

dedicated server usa

Products Affected

redhat

  • satellite