CVE-2018-14666

An improper authorization flaw was found in the Smart Class feature of Foreman. An attacker can use it to change configuration of any host registered in Red Hat Satellite, independent of the organization the host belongs to. This flaw affects all Red Hat Satellite 6 versions.
References
Link Resource
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-14666 Issue Tracking Vendor Advisory
http://www.securityfocus.com/bid/106490 Third Party Advisory
Configurations

Configuration 1

cpe:2.3:a:redhat:satellite:*:*:*:*:*:*:*:*

Information

Published : 2019-01-22 03:29

Updated : 2019-10-09 11:35


NVD link : CVE-2018-14666

Mitre link : CVE-2018-14666

Products Affected
No products.
CWE