Lucene search

K
cvelistRedhatCVELIST:CVE-2020-14296
HistoryAug 11, 2020 - 1:14 p.m.

CVE-2020-14296

2020-08-1113:14:57
redhat
www.cve.org

7.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.6%

Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF) flaw. With the access to add Ansible Tower provider, an attacker could scan and attack systems from the internal network which are not normally accessible.

CNA Affected

[
  {
    "product": "CloudForms",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "4.7 and 5"
      }
    ]
  }
]

7.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.6%

Related for CVELIST:CVE-2020-14296