Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7c48-4v8r-g293

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 does not properly restrict access to hosts, which allows remote attackers to access arbitrary hosts via an API request.

app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 does not properly restrict access to hosts, which allows remote attackers to access arbitrary hosts via an API request.

EPSS

Процентиль: 72%
0.00703
Низкий

Связанные уязвимости

ubuntu
больше 12 лет назад

app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 does not properly restrict access to hosts, which allows remote attackers to access arbitrary hosts via an API request.

redhat
больше 12 лет назад

app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 does not properly restrict access to hosts, which allows remote attackers to access arbitrary hosts via an API request.

nvd
больше 12 лет назад

app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 does not properly restrict access to hosts, which allows remote attackers to access arbitrary hosts via an API request.

debian
больше 12 лет назад

app/controllers/api/v1/hosts_controller.rb in Foreman before 1.2.2 doe ...

EPSS

Процентиль: 72%
0.00703
Низкий