NA

CVE-2023-1832

Published: 04/10/2023 Updated: 07/11/2023
CVSS v3 Base Score: 8.1 | Impact Score: 5.2 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An improper access control flaw was found in Candlepin. An attacker can create data scoped under another customer/tenant, which can result in loss of confidentiality and availability for the affected customer/tenant.

Vulnerable Product Search on Vulmon Subscribe to Product

candlepinproject candlepin

redhat satellite 6.0

Vendor Advisories

Description<!----> This CVE is under investigation by Red Hat Product Security ...