Beveiligingsadvies

CVE-2024-3716

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-05 15:05:37
Laatst bijgewerkt 2025-11-21 06:41:06
Toegewezen door redhat
CVSS-score 6.2
Status PUBLISHED

Beschrijving

A flaw was found in foreman-installer when puppet-candlepin is invoked cpdb with the --password parameter. This issue leaks the password in the process list and allows an attacker to take advantage and obtain the password.