Foreman 1.4.0 before 1.5.0 does not properly restrict access to provisioning template previews, which allows remote attackers to obtain sensitive information via the hostname parameter, related to "spoof."
Metrics
Affected Vendors & Products
References
History
Mon, 23 Dec 2024 01:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | ||
Vendors & Products |
Redhat satellite Capsule
|
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2014-05-08T14:00:00
Updated: 2024-08-06T09:05:39.323Z
Reserved: 2013-12-03T00:00:00
Link: CVE-2014-0192
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-05-08T14:29:14.033
Modified: 2024-11-21T02:01:36.110
Link: CVE-2014-0192
Redhat