CVE

CVE-2019-14890

CVE-2019-14890

An attacker with low privilege could retrieve usernames and passwords credentials from the new RHSM saved in plain text into the database at ‘/api/v2/config’ when applying the Ansible Tower license.

Source: CVE-2019-14890

Exit mobile version