Beveiligingsadvies

CVE-2017-7535

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-07-26 13:00:00
Laatst bijgewerkt 2024-08-05 16:04:11
Toegewezen door redhat
CVSS-score 6.1
Status PUBLISHED

Beschrijving

foreman before version 1.16.0 is vulnerable to a stored XSS in organizations/locations assignment to hosts. Exploiting this requires a user to actively assign hosts to an organization that contains html in its name which is visible to the user prior to taking action.