SQL injection vulnerability in the miq_policy controller in Red Hat CloudForms 2.0 Management Engine (CFME) 5.1 and ManageIQ Enterprise Virtualization Manager 5.0 and earlier allows remote authenticated users to execute arbitrary SQL commands via the profile[] parameter in an explorer action.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2014-01-11T01:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2013-02-19T00:00:00


Link: CVE-2013-2050

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-01-11T01:55:02.940

Modified: 2023-02-13T04:42:44.127


Link: CVE-2013-2050

JSON object: View

cve-icon Redhat Information

No data.

CWE