High severity8.8NVD Advisory· Published Apr 4, 2018· Updated Jun 17, 2026
CVE-2018-1097
CVE-2018-1097
Description
A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <1.16.1
- Foreman Project/foremanv5Range: before 1.16.1
Patches
Vulnerability mechanics
References
4- access.redhat.com/errata/RHSA-2018:2927nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- github.com/theforeman/foreman/pull/5369nvdIssue TrackingThird Party Advisory
- projects.theforeman.org/issues/22546nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.