CVE Published: 22/08/2018 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: redhat |
Vendor: The Foreman Project |
Product: foreman katello plugin Status : PUBLISHED
CVE-2017-2662 Description
A flaw was found in Foreman\'s katello plugin version 3.4.5. After setting a new role to allow restricted access on a repository with a filter (filter set on the Product Name), the filter is not respected when the actions are done via hammer using the repository id.