CVE-2019-14841
Published on: Not Yet Published
Last Modified on: 10/19/2022 02:56:00 PM UTC
Certain versions of Decision Manager from Redhat contain the following vulnerability:
A flaw was found in the RHDM, where an authenticated attacker can change their assigned role in the response header. This flaw allows an attacker to gain admin privileges in the Business Central Console.
- CVE-2019-14841 has been assigned by
[email protected] to track the vulnerability - currently rated as HIGH severity.
CVSS3 Score: 8.8 - HIGH
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | LOW | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | HIGH | HIGH | HIGH |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
1744801 – (CVE-2019-14841) CVE-2019-14841 RHDM: admin console auth bypass | bugzilla.redhat.com text/html |
![]() |
Red Hat Customer Portal - Access to 24x7 support and knowledge | access.redhat.com text/html |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Redhat | Decision Manager | 7.0 | All | All | All |
Application | Redhat | Process Automation | 7.0 | All | All | All |
- cpe:2.3:a:redhat:decision_manager:7.0:*:*:*:*:*:*:*:
- cpe:2.3:a:redhat:process_automation:7.0:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE