Theforeman

Foreman

85 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.22%
  • Veröffentlicht 01.10.2026 16:22:15
  • Zuletzt bearbeitet 08.10.2026 13:15:52

A flaw was found in Foreman. The foreman-rake initialization logic in /usr/share/foreman/config/settings.rb contains a vulnerable code pattern where configuration data is processed through two distinct executable layers. This creates a multi-stage ex...

  • EPSS 1.31%
  • Veröffentlicht 01.10.2026 16:22:09
  • Zuletzt bearbeitet 08.10.2026 13:16:22

A flaw was found in Foreman. OS command injection vulnerabilities exist in the foreman-rake db:dump and db:import_dump tasks. The application fails to properly sanitize user-supplied input in the destination parameter (during backups) and the file pa...

  • EPSS 1.31%
  • Veröffentlicht 01.10.2026 16:22:02
  • Zuletzt bearbeitet 08.10.2026 13:16:09

A flaw was found in Foreman. A command injection vulnerability exists in the foreman-rake errors:fetch_log task. The request_id parameter is passed to an underlying system command (typically grep) without adequate shell neutralization. While the task...

  • EPSS 0.38%
  • Veröffentlicht 01.10.2026 16:21:52
  • Zuletzt bearbeitet 08.10.2026 13:16:40

A flaw was found in Foreman. The Red Hat Satellite /unattended/provision API endpoint is vulnerable to an authentication bypass due to a semantic logic flaw in host_verifier.rb. The application verifies the database state of a provisioning token rath...

  • EPSS 0.21%
  • Veröffentlicht 27.08.2026 10:22:08
  • Zuletzt bearbeitet 07.10.2026 15:25:07

A flaw was found in Foreman. The template revision endpoint does not enforce object-level authorization when retrieving an audited template revision. An authenticated, low privileged user with a template-related permission, such as view_ptables, can ...

  • EPSS 0.25%
  • Veröffentlicht 01.07.2026 14:08:43
  • Zuletzt bearbeitet 09.07.2026 02:38:49

A flaw was found in Foreman. An authenticated user with host-edit permissions could exploit a cross-tenant information disclosure vulnerability. This flaw occurs because the taxonomy_scope controller method does not properly validate organization and...

  • EPSS 0.27%
  • Veröffentlicht 01.07.2026 14:08:39
  • Zuletzt bearbeitet 09.07.2026 02:39:11

A flaw was found in Foreman. This broken access control vulnerability allows an authenticated user with host-edit permissions to retarget an existing lookup value override to a different host. This is achieved by modifying the match field through nes...

  • EPSS 0.28%
  • Veröffentlicht 01.07.2026 14:07:55
  • Zuletzt bearbeitet 09.07.2026 02:38:36

A flaw was found in foreman. Authenticated users with 'view_keypairs' permission can bypass taxonomy scoping, allowing them to download private SSH (Secure Shell) keys from other organizations by directly querying key pair IDs. This vulnerability lea...

  • EPSS 0.33%
  • Veröffentlicht 01.07.2026 13:28:00
  • Zuletzt bearbeitet 09.07.2026 02:39:36

A flaw was found in Foreman. The Usergroup model in Foreman does not properly validate role assignments against the calling user's permissions. This allows an authenticated user with usergroup management permissions to attach arbitrary roles, includi...

  • EPSS 0.11%
  • Veröffentlicht 30.06.2026 09:53:03
  • Zuletzt bearbeitet 06.07.2026 17:29:58

A flaw has been found in foreman when HTTP parameters are modified in http_proxies_controller and http_proxy files. Attackers can perform an SSRF attack and steal cloud metadata service on AWS/GCP/Azure environment through foreman component.