CVE-2020-10779: Medium severity redhat Cloudforms vulnerability
Red Hat CloudForms 4.7 and 5 leads to insecure direct object references (IDOR) and functional level access control bypass due to missing privilege check. Therefore, if an attacker knows the right criteria, it is possible to access some sensitive data within the CloudForms.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this security issue?
The vulnerability ID for this security issue is CVE-2020-10779.
What is the severity level of CVE-2020-10779?
CVE-2020-10779 has a severity level of high.
Which software versions are affected by CVE-2020-10779?
Red Hat CloudForms 4.7 and 5.0.0 are affected by CVE-2020-10779.
How does CVE-2020-10779 impact the affected software?
CVE-2020-10779 leads to insecure direct object references (IDOR) and functional level access control bypass in Red Hat CloudForms.
Where can I find more information about CVE-2020-10779?
You can find more information about CVE-2020-10779 at the following references: [Reference 1](https://access.redhat.com/errata/RHSA-2020:3358), [Reference 2](https://access.redhat.com/security/cve/cve-2020-10779), [Reference 3](https://bugzilla.redhat.com/show_bug.cgi?id=1847647).