Lucene search

K
cvelistRedhatCVELIST:CVE-2020-10779
HistoryAug 11, 2020 - 12:40 p.m.

CVE-2020-10779

2020-08-1112:40:35
redhat
www.cve.org
1

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.6%

Red Hat CloudForms 4.7 and 5 leads to insecure direct object references (IDOR) and functional level access control bypass due to missing privilege check. Therefore, if an attacker knows the right criteria, it is possible to access some sensitive data within the CloudForms.

CNA Affected

[
  {
    "product": "CloudForms",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "4.7 and 5"
      }
    ]
  }
]

7.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.6%

Related for CVELIST:CVE-2020-10779