CVE-2012-5604: Red Hat Cloudforms

Medium severity, CVSS 4.3. EPSS: 1.8% chance of exploitation in the next 30 days.

The ldap_fluff gem for Ruby, as used in Red Hat CloudForms 1.1, when using Active Directory for authentication, allows remote attackers to bypass authentication via unspecified vectors.

Affected products

  • Red Hat Cloudforms: version 1.1 only

Published 2013-03-01. Last modified 2026-06-16.