Bug 2127318

Summary: ACS create wizard: review details step displays password in plaintext when manual auth is selected
Product: Red Hat Satellite Reporter: Gaurav Talreja <gtalreja>
Component: Alternate Content SourcesAssignee: Ian Ballou <iballou>
Status: CLOSED ERRATA QA Contact: Gaurav Talreja <gtalreja>
Severity: high Docs Contact:
Priority: unspecified    
Version: 6.12.0CC: iballou, pcreech
Target Milestone: 6.12.0Keywords: Triaged
Target Release: Unused   
Hardware: x86_64   
OS: Linux   
Whiteboard:
Fixed In Version: tfm-rubygem-katello-4.5.0.12-1 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2022-11-16 13:35:50 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Gaurav Talreja 2022-09-15 23:10:34 UTC
Description of problem:


Version-Release number of selected component (if applicable):
Satellite 6.12.0 Snap 11.0

How reproducible:
Always

Steps to Reproduce:
1. Enable ACS lab feature
2. Navigate to Lab features -> Alternate Content Sources -> Add Source -> 5 Credentials -> Select 'Manual authentication' -> Username 'test' Password 'test'
3. Go Next -> 6 Review Details


Actual results:
Password displayed in plaintext

Expected results:
Hidden password

Additional info:

Comment 1 Ian Ballou 2022-09-19 16:27:52 UTC
Created redmine issue https://projects.theforeman.org/issues/35537 from this bug

Comment 2 Bryan Kearney 2022-09-20 00:04:50 UTC
Moving this bug to POST for triage into Satellite since the upstream issue https://projects.theforeman.org/issues/35537 has been resolved.

Comment 6 Gaurav Talreja 2022-09-23 22:08:35 UTC
Verified.

Tested on Satellite 6.12.0 Snap 12.0

Steps:
Followed the steps mentioned in comment 1, and checked password field is hidden on review details page when selected manual auth

Comment 10 errata-xmlrpc 2022-11-16 13:35:50 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory (Important: Satellite 6.12 Release), and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2022:8506