CVE Vulnerabilities

CVE-2016-9593

Published: Apr 16, 2018 | Modified: Nov 07, 2023
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

foreman-debug before version 1.15.0 is vulnerable to a flaw in foreman-debugs logging. An attacker with access to the foreman log file would be able to view passwords, allowing them to access those systems.

Affected Software

Name Vendor Start Version End Version
Foreman Theforeman * 1.15.0 (excluding)

References