PT-2026-97551 · Red Hat · Ansible Automation Platform Automation-Controller

CVE-2026-85475

·

Published

2026-09-23

·

Updated

2026-09-24

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Ansible Automation Platform automation controller (affected versions not specified)
Description An issue exists where the external logging configuration for rsyslog is generated by interpolating user-controlled settings into an rsyslog RainerScript config file without neutralizing RainerScript syntax. A privileged superuser can inject rsyslog directives, such as an omprog action, leading to arbitrary command execution within the control-plane rsyslog component. This can result in the disclosure of the controller SECRET KEY and database credentials, the decryption of all stored credentials, and a full compromise of the control plane. The affected variables are LOG AGGREGATOR HOST, LOG AGGREGATOR MAX DISK USAGE PATH, and LOG AGGREGATOR RSYSLOGD ERROR LOG FILE.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-85475

Affected Products

Ansible Automation Platform Automation-Controller