Red Hat Stronghold 2.3 to 3.0 allows remote attackers to retrieve system information via an HTTP GET request to (1) stronghold-info or (2) stronghold-status.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Stronghold | Redhat | * | 3.0 (including) |
Stronghold | Redhat | 2.3 (including) | 2.3 (including) |