CVE-2014-7814

Publication date

2015-01-16 16:00:00

Family

redhat

State

PUBLISHED

Description

SQL injection vulnerability in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 allows remote authenticated users to execute arbitrary SQL commands via a crafted REST API request to an SQL filter.