2019-03-28 15:29:00 2019-03-29 19:05:23

When running Tower before 3.4.3 on OpenShift or Kubernetes, application credentials are exposed to playbook job runs via environment variables. A malicious user with the ability to write playbooks could use this to gain administrative privileges.

Vector

NETWORK

Complexity

LOW

Authentication

SINGLE_INSTANCE

Confidentiality

PARTIAL

Integrity

NONE

Availability

NONE
Redhat Ansible tower 1.2.2 (not an official CPE) Redhat Ansible tower 1.3.0 (not an official CPE) Redhat Ansible tower 1.4.0 (not an official CPE) Redhat Ansible tower 1.4.5 (not an official CPE) Redhat Ansible tower 1.4.8 (not an official CPE) Redhat Ansible tower 1.4.9 (not an official CPE) Redhat Ansible tower 1.4.10 (not an official CPE) Redhat Ansible tower 1.4.11 (not an official CPE) Redhat Ansible tower 1.4.12 (not an official CPE) Redhat Ansible tower 2.0.0 (not an official CPE) Redhat Ansible tower 2.0.1 (not an official CPE) Redhat Ansible tower 2.0.2 (not an official CPE) Redhat Ansible tower 2.0.3 (not an official CPE) Redhat Ansible tower 2.0.4 (not an official CPE) Redhat Ansible tower 2.1 (not an official CPE) Redhat Ansible tower 2.1.1 (not an official CPE) Redhat Ansible tower 2.1.2 (not an official CPE) Redhat Ansible tower 2.1.3 (not an official CPE) Redhat Ansible tower 2.1.4 (not an official CPE) Redhat Ansible tower 2.1.5 (not an official CPE) Redhat Ansible tower 2.1.6 (not an official CPE) Redhat Ansible tower 2.2.0 (not an official CPE) Redhat Ansible tower 2.2.0 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.2.1 (not an official CPE) Redhat Ansible tower 2.2.1 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.2.2 (not an official CPE) Redhat Ansible tower 2.2.2 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.3.0 (not an official CPE) Redhat Ansible tower 2.3.0 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.3.1 (not an official CPE) Redhat Ansible tower 2.3.1 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.4.0 (not an official CPE) Redhat Ansible tower 2.4.0 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.4.3 (not an official CPE) Redhat Ansible tower 2.4.3 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.4.4 (not an official CPE) Redhat Ansible tower 2.4.4 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 2.4.5 (not an official CPE) Redhat Ansible tower 2.4.5 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.0 (not an official CPE) Redhat Ansible tower 3.0 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.0.1 (not an official CPE) Redhat Ansible tower 3.0.1 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.0.2 (not an official CPE) Redhat Ansible tower 3.0.2 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.0.3 (not an official CPE) Redhat Ansible tower 3.0.3 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.0.4 (not an official CPE) Redhat Ansible tower 3.0.4 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.0 (not an official CPE) Redhat Ansible tower 3.1.0 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.1 (not an official CPE) Redhat Ansible tower 3.1.1 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.2 (not an official CPE) Redhat Ansible tower 3.1.2 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.3 (not an official CPE) Redhat Ansible tower 3.1.3 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.4 (not an official CPE) Redhat Ansible tower 3.1.4 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.5 (not an official CPE) Redhat Ansible tower 3.1.5 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.6 (not an official CPE) Redhat Ansible tower 3.1.6 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.7 (not an official CPE) Redhat Ansible tower 3.1.7 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.1.8 (not an official CPE) Redhat Ansible tower 3.1.8 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.0 (not an official CPE) Redhat Ansible tower 3.2.0 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.1 (not an official CPE) Redhat Ansible tower 3.2.1 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.2 (not an official CPE) Redhat Ansible tower 3.2.2 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.3 (not an official CPE) Redhat Ansible tower 3.2.3 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.4 (not an official CPE) Redhat Ansible tower 3.2.4 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.5 (not an official CPE) Redhat Ansible tower 3.2.5 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.6 (not an official CPE) Redhat Ansible tower 3.2.6 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.7 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.2.8 ~~scm repositories~~~ (not an official CPE) Redhat Ansible tower 3.3 (not an official CPE) Redhat Ansible tower 3.3.0 ~~scm repositories~~~ (not an official CPE)