Описание
ManageIQ in CloudForms before 4.1 allows remote authenticated users to execute arbitrary code.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| CloudForms Management Engine 5.3 | cfme | Affected | ||
| CloudForms Management Engine 5.4 | cfme | Affected | ||
| CloudForms Management Engine 5.5 | cfme | Affected | ||
| CloudForms Management Engine 5.6 | cfme | Fixed | RHBA-2016:1348 | 29.06.2016 |
| CloudForms Management Engine 5.6 | cfme-appliance | Fixed | RHBA-2016:1348 | 29.06.2016 |
| CloudForms Management Engine 5.6 | cfme-gemset | Fixed | RHBA-2016:1348 | 29.06.2016 |
| CloudForms Management Engine 5.6 | prince | Fixed | RHBA-2016:1348 | 29.06.2016 |
| CloudForms Management Engine 5.6 | rh-postgresql94-postgresql-pglogical | Fixed | RHBA-2016:1348 | 29.06.2016 |
| CloudForms Management Engine 5.6 | rh-postgresql94-postgresql-pglogical-output | Fixed | RHBA-2016:1348 | 29.06.2016 |
| CloudForms Management Engine 5.6 | rh-ruby22-rubygem-bcrypt | Fixed | RHBA-2016:1348 | 29.06.2016 |
Показывать по
10
Дополнительная информация
Статус:
Low
https://bugzilla.redhat.com/show_bug.cgi?id=1340763cfme: Privilege escalation causing arbitrary code execution
EPSS
Процентиль: 82%
0.01639
Низкий
3.7 Low
CVSS2
Связанные уязвимости
CVSS3: 8.8
nvd
больше 8 лет назад
ManageIQ in CloudForms before 4.1 allows remote authenticated users to execute arbitrary code.
CVSS3: 8.8
github
больше 3 лет назад
ManageIQ in CloudForms before 4.1 allows remote authenticated users to execute arbitrary code.
EPSS
Процентиль: 82%
0.01639
Низкий
3.7 Low
CVSS2