Project

General

Custom queries

Profile

Actions

Bug #31937

closed

CVE-2021-20256 foreman: BMC controller credential leak via API

Added by Evgeni Golov about 4 years ago. Updated about 4 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
Security
Target version:
Difficulty:
Triaged:
No
Fixed in Releases:
Found in Releases:

Description

A password leak was identified on Foreman which will expose BMC password in plaintext through the host API.

Actions

Also available in: Atom PDF