PT-2026-97551 · Red Hat · Ansible Automation Platform Automation-Controller
CVE-2026-85475
·
Published
2026-09-23
·
Updated
2026-09-24
CVSS v3.1
7.2
High
| Vector | AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Ansible Automation Platform automation controller (affected versions not specified)
Description
An issue exists where the external logging configuration for rsyslog is generated by interpolating user-controlled settings into an rsyslog RainerScript config file without neutralizing RainerScript syntax. A privileged superuser can inject rsyslog directives, such as an omprog action, leading to arbitrary command execution within the control-plane rsyslog component. This can result in the disclosure of the controller
SECRET KEY and database credentials, the decryption of all stored credentials, and a full compromise of the control plane. The affected variables are LOG AGGREGATOR HOST, LOG AGGREGATOR MAX DISK USAGE PATH, and LOG AGGREGATOR RSYSLOGD ERROR LOG FILE.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ansible Automation Platform Automation-Controller