Foreman before 1.9.0 allows remote authenticated users with the edit_users permission to edit administrator users and change their passwords via unspecified vectors.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Foreman |
Theforeman |
* |
1.8.2 (including) |
References