Security Advisory
CVE-2020-14380
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
An account takeover flaw was found in Red Hat Satellite 6.7.2 onward. A potential attacker with proper authentication to the relevant external authentication source (SSO or Open ID) can claim the privileges of already existing local users of Satellite.