← Back

CVE-2026-5138

nvd nist
Published: Jul 1, 2026Modified: Jul 9, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: secalert@redhat.com (Secondary)

Description

A flaw was found in Foreman. An authenticated user with host-edit permissions could exploit a cross-tenant information disclosure vulnerability. This flaw occurs because the taxonomy_scope controller method does not properly validate organization and location IDs from nested request parameters, bypassing existing authorization checks. This allows the user to leak sensitive infrastructure metadata, including subnet topology, IP ranges, gateways, DNS servers, and VLAN IDs, from organizations and locations they are not authorized to access.

Affected (6)

1 product
Satellite
1 product
Foreman
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 6.16 to 6.16.10
Running on/withPlatform Versions
Redhat
Enterprise Linux
Version 8.0
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.17 to 6.17.9
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
From 6.18 to 6.18.7
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 6.19 to 6.19.2
Running on/withPlatform Versions
Redhat
Enterprise Linux
Version 9.0
Configuration E
2 vulnerable
Vulnerable SoftwareAffected Versions
Theforeman
Before 3.18.2
From 3.19.0 to 3.19.1

References (6)

Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Issue TrackingVendor Advisory

Timeline

No history available yet.