Vulnerabilities > CVE-2024-3716 - Unspecified vulnerability in Redhat Satellite 6.0
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
A flaw was found in foreman-installer when puppet-candlepin is invoked cpdb with the --password parameter. This issue leaks the password in the process list and allows an attacker to take advantage and obtain the password.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |