Security Advisory

CVE-2018-14643

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-09-21 13:00:00
Last updated 2024-08-05 09:38:12
Assigner redhat
State PUBLISHED

Description

An authentication bypass flaw was found in the smart_proxy_dynflow component used by Foreman. A malicious attacker can use this flaw to remotely execute arbitrary commands on machines managed by vulnerable Foreman instances, in a highly privileged context.