Описание
A flaw was found in Red Hat Satellite (Foreman component). This vulnerability allows an authenticated user with edit_settings permissions to achieve arbitrary command execution on the underlying operating system via insufficient server-side validation of command whitelisting.
Ссылки
EPSS
Процентиль: 33%
0.00133
Низкий
8 High
CVSS3
Дефекты
CWE-602
Связанные уязвимости
CVSS3: 8
github
3 месяца назад
A flaw was found in Red Hat Satellite (Foreman component). This vulnerability allows an authenticated user with edit_settings permissions to achieve arbitrary command execution on the underlying operating system via insufficient server-side validation of command whitelisting.
EPSS
Процентиль: 33%
0.00133
Низкий
8 High
CVSS3
Дефекты
CWE-602