#VU97594 Improper Authentication in Red Hat Satellite - CVE-2024-7923
Published: September 19, 2024
Red Hat Satellite
Red Hat Inc.
Description
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to an error in the puppet-pulpcore configuration when deployed with Gunicorn versions prior to 22.0. A remote attacker can send a specially crafted HTTP request to bypass authentication process and gain administrative access to the application.