Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-81668— Rubygem-katello: cross-tenant content view filter rule access and modification via unauthorized parent filter lookup

Quick assessment

Affected
Red Hat Red Hat Satellite 6
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 Katello 中发现了缺陷:内容视图过滤规则 API 未对父级内容视图过滤器正确执行授权。一个拥有某个组织中内容视图权限的低权限认证用户,可能通过提供该过滤器的标识符,访问并修改另一个组织中内容视图过滤器的过滤规则。这可能导致过滤规则信息的未授权泄露,以及未授权修改未发布的内容视图过滤配置。

CVSS 5.4 · Medium

Possible ATT&CK Techniques 1 AI

T1079
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-81668

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Rubygem-katello: cross-tenant content view filter rule access and modification via unauthorized parent filter lookup
Source: CVE Program / CVE List V5
Vulnerability Description
A flaw was found in Katello where the Content View Filter Rules API does not properly enforce authorization on the parent Content View Filter. An authenticated, low-privileged user with Content View permissions in one organization may be able to access and modify filter rules belonging to a Content View Filter in another organization by supplying that filter's identifier. This can result in unauthorized disclosure of filter-rule information and unauthorized changes to unpublished Content View filter configuration.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
通过用户控制密钥绕过授权机制
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
Red Hat Red Hat Satellite 6 - cpe:/a:redhat:satellite:6

II. Public POCs for CVE-2026-81668

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-81668

登录查看更多情报信息。

Other References for CVE-2026-81668 (1)

Same Patch Batch · Red Hat · 2026-08-27 · 4 CVEs total

CVE-2026-5680 7.5 HIGH Undertow-core: undertow: denial of service via websocket permessage-deflate processing
CVE-2026-78002 7.5 HIGH Rsyslog: rsyslog: denial of service via heap buffer overflow in rainerscript replace() fun
CVE-2026-81658 6.5 MEDIUM Foreman: cross-tenant disclosure of template revisions via unauthorized audit lookup

IV. Related Vulnerabilities

V. Comments for CVE-2026-81668

No comments yet


Leave a comment