CVE-2018-10863

Publication date

2021-05-26 18:03:06

Family

redhat

State

PUBLISHED

Description

It was discovered that redhat-certification 7 is not properly configured and it lists all files and directories in the /var/www/rhcert/store/transfer directory, through the /rhcert-transfer URL. An unauthorized attacker may use this flaw to gather sensible information.