#VU97593 Improper Authentication in Red Hat Satellite - CVE-2024-7012
Published: September 19, 2024
Red Hat Satellite
Red Hat Inc.
Description
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to an error in the puppet-foreman configuration when deployed with External Authentication. A remote attacker can send a specially crafted HTTP request to bypass authentication process and gain administrative access to the application.