Medium severity6.7NVD Advisory· Published Oct 3, 2023· Updated Jun 17, 2026
CVE-2023-4886
CVE-2023-4886
Description
A sensitive information exposure vulnerability was found in foreman. Contents of tomcat's server.xml file, which contain passwords to candlepin's keystore and truststore, were found to be world readable.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- Red Hat/Red Hat Satellite 6.13 for RHEL 8v5cpe:/a:redhat:satellite_utils:6.13::el8Range: 0:3.5.1.24-1.el8sat
- Red Hat/Red Hat Satellite 6.14 for RHEL 8v5cpe:/a:redhat:satellite_utils:6.14::el8Range: 1:3.7.0.5-1.el8sat
Patches
Vulnerability mechanics
References
4- access.redhat.com/security/cve/CVE-2023-4886nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- access.redhat.com/errata/RHSA-2023:7851nvd
- access.redhat.com/errata/RHSA-2024:1061nvd
News mentions
0No linked articles in our index yet.