← back
CVE-2021-20260

CVE-2021-20260

EPSS 0.2%CWE-200
A flaw was found in the Foreman project. The Datacenter plugin exposes the password through the API to an authenticated local attacker with view_hosts permission. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Affected products
n/a · foreman

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →