Логотип exploitDog
bind:CVE-2015-5233
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-5233

Количество 4

Количество 4

redhat логотип

CVE-2015-5233

больше 10 лет назад

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authenticated users with the view_reports permission to read reports from arbitrary hosts or (2) remote authenticated users with the destroy_reports permission to delete reports from arbitrary hosts via direct access to the (a) individual report show/delete pages or (b) APIs.

CVSS2: 5.5
EPSS: Низкий
nvd логотип

CVE-2015-5233

почти 10 лет назад

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authenticated users with the view_reports permission to read reports from arbitrary hosts or (2) remote authenticated users with the destroy_reports permission to delete reports from arbitrary hosts via direct access to the (a) individual report show/delete pages or (b) APIs.

CVSS3: 4.2
EPSS: Низкий
debian логотип

CVE-2015-5233

почти 10 лет назад

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view ...

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-m3c3-hv22-w332

больше 3 лет назад

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authenticated users with the view_reports permission to read reports from arbitrary hosts or (2) remote authenticated users with the destroy_reports permission to delete reports from arbitrary hosts via direct access to the (a) individual report show/delete pages or (b) APIs.

CVSS3: 4.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2015-5233

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authenticated users with the view_reports permission to read reports from arbitrary hosts or (2) remote authenticated users with the destroy_reports permission to delete reports from arbitrary hosts via direct access to the (a) individual report show/delete pages or (b) APIs.

CVSS2: 5.5
0%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-5233

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authenticated users with the view_reports permission to read reports from arbitrary hosts or (2) remote authenticated users with the destroy_reports permission to delete reports from arbitrary hosts via direct access to the (a) individual report show/delete pages or (b) APIs.

CVSS3: 4.2
0%
Низкий
почти 10 лет назад
debian логотип
CVE-2015-5233

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view ...

CVSS3: 4.2
0%
Низкий
почти 10 лет назад
github логотип
GHSA-m3c3-hv22-w332

Foreman before 1.8.4 and 1.9.x before 1.9.1 do not properly apply view_hosts permissions, which allows (1) remote authenticated users with the view_reports permission to read reports from arbitrary hosts or (2) remote authenticated users with the destroy_reports permission to delete reports from arbitrary hosts via direct access to the (a) individual report show/delete pages or (b) APIs.

CVSS3: 4.2
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу