proxies_controller.rb in Katello in Red Hat CloudForms before 1.1 does not properly check permissions, which allows remote authenticated users to read consumer certificates or change arbitrary users' settings via unspecified vectors related to the "consumer UUID" of a system.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published: 2013-01-04T22:00:00.000Z
Updated: 2024-08-06T21:14:15.606Z
Reserved: 2012-10-24T00:00:00.000Z
Link: CVE-2012-5603
No data.
Status : Deferred
Published: 2013-01-04T22:55:02.383
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-5603
ReportizFlow