Candlepinproject Candlepin 3.1.11-1

CPE Details

Candlepinproject Candlepin 3.1.11-1
3.1.11-1
2023-10-06
14h30 +00:00
2023-10-06
14h30 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:candlepinproject:candlepin:3.1.11-1:*:*:*:*:*:*:*

Informations

Vendor

candlepinproject

Product

candlepin

Version

3.1.11-1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-1832 2023-10-04 13h05 +00:00 An improper access control flaw was found in Candlepin. An attacker can create data scoped under another customer/tenant, which can result in loss of confidentiality and availability for the affected customer/tenant.
8.1
High
CVE-2021-4142 2022-08-24 13h09 +00:00 The Candlepin component of Red Hat Satellite was affected by an improper authentication flaw. Few factors could allow an attacker to use the SCA (simple content access) certificate for authentication with Candlepin.
5.5
Medium