Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-2121

Опубликовано: 07 июн. 2013
Источник: redhat
CVSS2: 6
EPSS Средний

Описание

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

Дополнительная информация

Статус:

Important
Дефект:
CWE-95
https://bugzilla.redhat.com/show_bug.cgi?id=968166Foreman: app/controllers/bookmarks_controller.rb remote code execution

EPSS

Процентиль: 98%
0.24782
Средний

6 Medium

CVSS2

Связанные уязвимости

nvd
около 13 лет назад

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

debian
около 13 лет назад

Eval injection vulnerability in the create method in the Bookmarks con ...

github
около 4 лет назад

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

EPSS

Процентиль: 98%
0.24782
Средний

6 Medium

CVSS2