Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j6g9-xm4c-vp6v

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

EPSS

Процентиль: 98%
0.60925
Средний

Дефекты

CWE-94

Связанные уязвимости

redhat
больше 12 лет назад

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

nvd
больше 12 лет назад

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

debian
больше 12 лет назад

Eval injection vulnerability in the create method in the Bookmarks con ...

EPSS

Процентиль: 98%
0.60925
Средний

Дефекты

CWE-94