An account takeover flaw was found in Red Hat Satellite 6.7.2 onward. A potential attacker with proper authentication to the relevant external authentication source (SSO or Open ID) can claim the privileges of already existing local users of Satellite.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2021-06-02T12:27:11

Updated: 2024-08-04T12:46:34.287Z

Reserved: 2020-06-17T00:00:00

Link: CVE-2020-14380

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-06-02T13:15:09.933

Modified: 2023-02-12T23:40:21.790

Link: CVE-2020-14380

cve-icon Redhat

Severity : Important

Publid Date: 2020-08-31T02:44:00Z

Links: CVE-2020-14380 - Bugzilla