Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j6g9-xm4c-vp6v

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

EPSS

Процентиль: 98%
0.24782
Средний

Дефекты

CWE-94

Связанные уязвимости

redhat
около 13 лет назад

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

nvd
около 13 лет назад

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

debian
около 13 лет назад

Eval injection vulnerability in the create method in the Bookmarks con ...

EPSS

Процентиль: 98%
0.24782
Средний

Дефекты

CWE-94