Beveiligingsadvies

CVE-2024-4812

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-05 15:06:13
Laatst bijgewerkt 2025-11-20 19:15:48
Toegewezen door redhat
CVSS-score 4.8
Status PUBLISHED

Beschrijving

A flaw was found in the Katello plugin for Foreman, where it is possible to store malicious JavaScript code in the "Description" field of a user. This code can be executed when opening certain pages, for example, Host Collections.