CVE-2023-4886: Red Hat Satellite

Medium severity, CVSS 4.4. EPSS: 0.3% chance of exploitation in the next 30 days.

A sensitive information exposure vulnerability was found in foreman. Contents of tomcat's server.xml file, which contain passwords to candlepin's keystore and truststore, were found to be world readable.

Affected products

Published 2023-10-03. Last modified 2026-06-17.