Back to bug 1310675

Who When What Removed Added
Adam Mariš 2016-02-22 13:51:04 UTC Blocks 1310678
Adam Mariš 2016-02-22 15:42:15 UTC Depends On 1192414
Kurt Seifried 2016-02-23 00:26:08 UTC Alias CVE-2015-7582 CVE-2016-2100
Kurt Seifried 2016-02-23 00:26:17 UTC Summary CVE-2015-7582 foreman: Unprivileged user can access private bookmarks of other users CVE-2016-2100 foreman: Unprivileged user can access private bookmarks of other users
John Skeoch 2016-04-18 07:56:33 UTC CC yeylon srevivo
Perry Myers 2016-04-19 00:56:05 UTC CC pmyers
Siddharth Sharma 2016-05-03 09:46:35 UTC CC sisharma
Whiteboard impact=moderate,public=20150213,reported=20150213,source=redhat,cvss2=5.5/AV:N/AC:L/Au:S/C:P/I:P/A:N,cwe=CWE-200,rhn_satellite_6/foreman=new,openstack-foreman/foreman=new,openstack-6-installer/foreman=new impact=moderate,public=20150213,reported=20150213,source=redhat,cvss2=5.5/AV:N/AC:L/Au:S/C:P/I:P/A:N,cwe=CWE-200,rhn_satellite_6/foreman=new,openstack-foreman/foreman=new,openstack-6-installer/foreman=new,ceph-1.3/foreman=new
Kurt Seifried 2016-05-05 20:31:15 UTC CC jmatthew, tsanders
Kurt Seifried 2016-09-19 19:38:11 UTC Doc Text It was found that access to private bookmarks of users is not properly restricted in Foreman. This could allow an attacker to view the search terms used in these bookmarks which should be private.
Kurt Seifried 2016-09-19 19:43:20 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2016-09-19 15:43:20 UTC
Product Security DevOps Team 2019-09-29 13:44:17 UTC Whiteboard impact=moderate,public=20150213,reported=20150213,source=redhat,cvss2=5.5/AV:N/AC:L/Au:S/C:P/I:P/A:N,cwe=CWE-200,rhn_satellite_6/foreman=new,openstack-foreman/foreman=new,openstack-6-installer/foreman=new,ceph-1.3/foreman=new

Back to bug 1310675