Beveiligingsadvies

CVE-2016-7040

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2016-10-07 14:00:00
Laatst bijgewerkt 2024-08-06 01:50:47
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Red Hat CloudForms Management Engine 4.1 does not properly handle regular expressions passed to the expression engine via the JSON API and the web-based UI, which allows remote authenticated users to execute arbitrary shell commands by leveraging the ability to view and filter collections.