The (1) get and (2) log methods in the AgentController in Red Hat CloudForms 3.0 Management Engine (CFME) 5.x allow remote attackers to insert arbitrary text into log files via unspecified vectors.
References
Link | Resource |
---|---|
http://rhn.redhat.com/errata/RHSA-2014-1037.html | Vendor Advisory |
http://www.securityfocus.com/bid/69233 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2014-10-27T01:00:00
Updated: 2014-10-27T00:57:00
Reserved: 2013-12-03T00:00:00
Link: CVE-2014-0136
JSON object: View
NVD Information
Status : Modified
Published: 2014-10-27T01:55:24.157
Modified: 2023-02-13T00:32:41.720
Link: CVE-2014-0136
JSON object: View
Redhat Information
No data.
CWE