What the vulnerability does

01Description

A flaw was found in ovirt-engine 4.4.3 and earlier allowing an authenticated user to read other users' personal information, including name, email and public SSH key.

Key dates

02Disclosure timeline

December 21, 2020 CVE published
August 4, 2024 Record updated