Total vulnerabilities in the database
An HTML injection flaw was found in Controller in the user interface settings. This flaw allows an attacker to capture credentials by creating a custom login page by injecting HTML, resulting in a complete compromise.
Software | From | Fixed in |
---|---|---|
redhat / ansible_automation_controller | 4.4 | 4.4.x |
redhat / ansible_automation_controller | - | 4.3.11 |
redhat / ansible_automation_platform | 2.3 | 2.3.x |
redhat / ansible_automation_platform | 2.4 | 2.4.x |
redhat / ansible_developer | 1.0 | 1.0.x |
redhat / ansible_inside | 1.1 | 1.1.x |