Description
A flaw was found in Foreman's katello plugin version 3.4.5. After setting a new role to allow restricted access on a repository with a filter (filter set on the Product Name), the filter is not respected when the actions are done via hammer using the repository id.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-3607 | A flaw was found in Foreman's katello plugin version 3.4.5. After setting a new role to allow restricted access on a repository with a filter (filter set on the Product Name), the filter is not respected when the actions are done via hammer using the repository id. |
Github GHSA |
GHSA-cpv6-pfq6-j2v7 | katello Improper Privilege Management vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T14:02:07.107Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2662
No data.
Status : Modified
Published: 2018-08-22T16:29:01.417
Modified: 2024-11-21T03:23:55.673
Link: CVE-2017-2662
OpenCVE Enrichment
No data.
EUVD
Github GHSA