CVE-2020-14296

Publication date

2020-08-11 13:14:57

Family

redhat

State

PUBLISHED

Description

Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF) flaw. With the access to add Ansible Tower provider, an attacker could scan and attack systems from the internal network which are not normally accessible.