CVE-2019-3893
In Foreman it was discovered that the delete compute resource operation, when executed from the Foreman API, leads to the disclosure of the plaintext password or token for the affected compute resource.
Does this matter?
Lower severity and a low EPSS score (1.83%). Track it; it rarely justifies an emergency change on its own.
Description
In Foreman it was discovered that the delete compute resource operation, when executed from the Foreman API, leads to the disclosure of the plaintext password or token for the affected compute resource. A malicious user with the "delete_compute_resource" permission can use this flaw to take control over compute resources managed by foreman. Versions before 1.20.3, 1.21.1, 1.22.0 are vulnerable.
- CVSS 3.1
- 4.9 MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 1.83% probability · 78th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-732
- Affected
- theforeman/foreman · redhat/satellite
- Source
- secalert@redhat.com
References
- http://www.openwall.com/lists/oss-security/2019/04/14/2Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/107846Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3893Issue Tracking, Third Party Advisory
- https://github.com/theforeman/foreman/pull/6621Third Party Advisory
- https://projects.theforeman.org/issues/26450Vendor Advisory
- http://www.openwall.com/lists/oss-security/2019/04/14/2Mailing List, Third Party Advisory
- http://www.securityfocus.com/bid/107846Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3893Issue Tracking, Third Party Advisory
- https://github.com/theforeman/foreman/pull/6621Third Party Advisory
- https://projects.theforeman.org/issues/26450Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.