CVE-2020-14380 PUBLISHED CVSS 6 MEDIUM

An account takeover flaw was found in Red Hat Satellite 6.7.2 onward. A potential attacker with proper authentication to the relevant external authentication source (SSO or Open ID) can claim the privileges of already existing local users of Satellite.

EPSS 0.32% · 54.8th percentile

Risk Scores

CVSS v2.0
6
EPSS Score
0.32%
54.8th percentile

Affected Products

VendorProductVersions
redhatsatellite6.7.2
n/aRed Hat SatelliteRed Hat Satellite 6.8

Timeline

References

Open in Interactive Console →