CVE-2016-7077
- EPSS 0.16%
- Published 10.09.2018 15:29:01
- Last modified 21.11.2024 02:57:24
foreman before 1.14.0 is vulnerable to an information leak. It was found that Foreman form helper does not authorize options for associated objects. Unauthorized user can see names of such objects if their count is less than 6.
CVE-2016-8639
- EPSS 0.58%
- Published 01.08.2018 13:29:00
- Last modified 21.11.2024 02:59:44
It was found that foreman before 1.13.0 is vulnerable to a stored XSS via an organization or location name. This could allow an attacker with privileges to set the organization or location name to display arbitrary HTML including scripting code withi...
CVE-2016-8634
- EPSS 0.27%
- Published 01.08.2018 12:29:00
- Last modified 21.11.2024 02:59:43
A vulnerability was found in foreman 1.14.0. When creating an organization or location in Foreman, if the name contains HTML then the second step of the wizard (/organizations/id/step2) will render the HTML. This occurs in the alertbox on the page. T...
CVE-2016-8613
- EPSS 0.74%
- Published 31.07.2018 20:29:00
- Last modified 21.11.2024 02:59:40
A flaw was found in foreman 1.5.1. The remote execution plugin runs commands on hosts over SSH from the Foreman web UI. When a job is submitted that contains HTML tags, the console output shown in the web UI does not escape the output causing any HTM...
CVE-2017-7535
- EPSS 0.67%
- Published 26.07.2018 13:29:00
- Last modified 21.11.2024 03:32:06
foreman before version 1.16.0 is vulnerable to a stored XSS in organizations/locations assignment to hosts. Exploiting this requires a user to actively assign hosts to an organization that contains html in its name which is visible to the user prior ...
CVE-2017-2672
- EPSS 0.54%
- Published 21.06.2018 13:29:00
- Last modified 21.11.2024 03:23:56
A flaw was found in foreman before version 1.15 in the logging of adding and registering images. An attacker with access to the foreman log file would be able to view passwords for provisioned systems in the log file, allowing them to access those sy...
CVE-2016-9593
- EPSS 0.15%
- Published 16.04.2018 15:29:00
- Last modified 21.11.2024 03:01:28
foreman-debug before version 1.15.0 is vulnerable to a flaw in foreman-debug's logging. An attacker with access to the foreman log file would be able to view passwords, allowing them to access those systems.
CVE-2018-1096
- EPSS 0.32%
- Published 05.04.2018 21:29:01
- Last modified 21.11.2024 03:59:10
An input sanitization flaw was found in the id field in the dashboard controller of Foreman before 1.16.1. A user could use this flaw to perform an SQL injection attack on the back end database.
CVE-2018-1097
- EPSS 0.4%
- Published 04.04.2018 21:29:00
- Last modified 21.11.2024 03:59:10
A flaw was found in foreman before 1.16.1. The issue allows users with limited permissions for powering oVirt/RHV hosts on and off to discover the username and password used to connect to the compute resource.
CVE-2017-15100
- EPSS 0.34%
- Published 27.11.2017 14:29:00
- Last modified 20.04.2025 01:37:25
An attacker submitting facts to the Foreman server containing HTML can cause a stored XSS on certain pages: (1) Facts page, when clicking on the "chart" button and hovering over the chart; (2) Trends page, when checking the graph for a trend based on...