A logic flaw exists in Ansible Automation platform. Whenever a private project is created with incorrect credentials, they are logged in plaintext. This flaw allows an malicious user to retrieve the credentials from the log, resulting in the loss of confidentiality, integrity, and availability.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
redhat ansible_automation_platform 2.4 |
||
redhat ansible_developer 1.1 |
||
redhat ansible_inside 1.2 |