Arbitrary Code Execution Vulnerability in Ansible Tower by Red Hat
CVE-2018-1104
8.8HIGH
What is CVE-2018-1104?
Ansible Tower, up to version 3.2.3, contains a vulnerability that permits users with permissions to define variables for a job template to execute arbitrary code on the Tower server. This flaw can potentially allow unauthorized actions, leading to severe impacts on the system’s integrity. It is essential for users of Ansible Tower to apply the necessary patches immediately to mitigate any risks associated with this issue.
Affected Version(s)
Ansible Tower through version 3.2.3