First published: Tue May 31 2016(Updated: )
Šimon Lukašík of Red Hat reports: CloudForms ships a default encryption certificate and key for the web interface.
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat CloudForms Management Engine |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity level of REDHAT-BUG-1341308 is considered high due to the presence of a default encryption certificate and key.
To fix REDHAT-BUG-1341308, you should generate and deploy your own unique encryption certificate and key.
The vulnerability REDHAT-BUG-1341308 was reported by Šimon Lukašík of Red Hat.
REDHAT-BUG-1341308 affects the Red Hat CloudForms Management Engine.
The primary issue in REDHAT-BUG-1341308 is the use of a default encryption certificate and key for the web interface.