CVE-2021-3456

CVE-2021-3456

An improper authorization handling flaw was found in Foreman. The Salt plugin for the smart-proxy allows foreman clients to execute actions that should be limited to the Foreman Server. This flaw allows an authenticated local attacker to access and delete limited resources and also causes a denial of service on the Foreman server. The highest threat from this vulnerability is to integrity and system availability.

Source: CVE-2021-3456

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다