Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF) flaw. With the access to add Ansible Tower provider, an attacker could scan and attack systems from the internal network which are not normally accessible.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T12:39:36.243Z
Reserved: 2020-06-17T00:00:00
Link: CVE-2020-14296

No data.

Status : Modified
Published: 2020-08-11T14:15:11.460
Modified: 2024-11-21T05:02:56.993
Link: CVE-2020-14296
