CVE-2020-14380

An account takeover flaw was found in Red Hat Satellite 6.7.2 onward. A potential attacker with proper authentication to the relevant external authentication source (SSO or Open ID) can claim the privileges of already existing local users of Satellite.
References
Link Resource
https://bugzilla.redhat.com/show_bug.cgi?id=1873926 Issue Tracking Vendor Advisory
Configurations

Configuration 1

cpe:2.3:a:redhat:satellite:6.7.2:*:*:*:*:*:*:*

Information

Published : 2021-06-02 01:15

Updated : 2023-02-12 11:40


NVD link : CVE-2020-14380

Mitre link : CVE-2020-14380

Products Affected
No products.
CWE