Lucene search

K
cvelistRedhatCVELIST:CVE-2020-10716
HistoryMay 27, 2021 - 6:46 p.m.

CVE-2020-10716

2021-05-2718:46:07
CWE-285
redhat
www.cve.org
1

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.5%

A flaw was found in Red Hat Satellite’s Job Invocation, where the “User Input” entry was not properly restricted to the view. This flaw allows a malicious Satellite user to scan through the Job Invocation, with the ability to search for passwords and other sensitive data. This flaw affects tfm-rubygem-foreman_ansible versions before 4.0.3.4.

CNA Affected

[
  {
    "product": "rubygem-foreman_ansible",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "tfm-rubygem-foreman_ansible 4.0.3.4"
      }
    ]
  }
]

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.5%

Related for CVELIST:CVE-2020-10716