Project

General

Profile

Actions

Bug #31937

closed

CVE-2021-20256 foreman: BMC controller credential leak via API

Added by Evgeni Golov over 3 years ago. Updated over 3 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Category:
Security
Target version:
Difficulty:
Triaged:
No
Fixed in Releases:
Found in Releases:

Description

A password leak was identified on Foreman which will expose BMC password in plaintext through the host API.

Actions

Also available in: Atom PDF