Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

redhat логотип

CVE-2022-3874

больше 3 лет назад

A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora CoreOS configurations in templates, possibly resulting in arbitrary command execution on the underlying operating system.

CVSS3: 9.1
EPSS: Низкий
nvd логотип

CVE-2022-3874

почти 3 года назад

A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora CoreOS configurations in templates, possibly resulting in arbitrary command execution on the underlying operating system.

CVSS3: 8
EPSS: Низкий
debian логотип

CVE-2022-3874

почти 3 года назад

A command injection flaw was found in foreman. This flaw allows an aut ...

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-9jfq-54vc-9rr2

почти 3 года назад

Foreman Transpilation Enables OS Command Injection

CVSS3: 9.1
EPSS: Низкий
fstec логотип

BDU:2023-06049

почти 3 года назад

Уязвимость функции ct_command/fcct_command программного средства для управления системами Red Hat Satellite и приложения для управления, настройки и мониторинга сервера Foreman, позволяющая нарушителю выполнить произвольные команды

CVSS3: 8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2022-3874

A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora CoreOS configurations in templates, possibly resulting in arbitrary command execution on the underlying operating system.

CVSS3: 9.1
2%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-3874

A command injection flaw was found in foreman. This flaw allows an authenticated user with admin privileges on the foreman instance to transpile commands through CoreOS and Fedora CoreOS configurations in templates, possibly resulting in arbitrary command execution on the underlying operating system.

CVSS3: 8
2%
Низкий
почти 3 года назад
debian логотип
CVE-2022-3874

A command injection flaw was found in foreman. This flaw allows an aut ...

CVSS3: 8
2%
Низкий
почти 3 года назад
github логотип
GHSA-9jfq-54vc-9rr2

Foreman Transpilation Enables OS Command Injection

CVSS3: 9.1
2%
Низкий
почти 3 года назад
fstec логотип
BDU:2023-06049

Уязвимость функции ct_command/fcct_command программного средства для управления системами Red Hat Satellite и приложения для управления, настройки и мониторинга сервера Foreman, позволяющая нарушителю выполнить произвольные команды

CVSS3: 8
2%
Низкий
почти 3 года назад

Уязвимостей на страницу