Product:

Cloudforms_3\.0\.2_management_engine

(Redhat)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 2
Date Id Summary Products Score Patch Annotated
2014-10-06 CVE-2014-0140 Red Hat CloudForms 3.1 Management Engine (CFME) before 5.3 allows remote authenticated users to access sensitive controllers and actions via a direct HTTP or HTTPS request. Cloudforms_3\.0\.1_management_engine, Cloudforms_3\.0\.2_management_engine, Cloudforms_3\.0\.3_management_engine, Cloudforms_3\.0\.4_management_engine, Cloudforms_3\.0\.5_management_engine, Cloudforms_3\.0_management_engine N/A
2014-10-06 CVE-2014-3642 vmdb/app/controllers/application_controller/performance.rb in Red Hat CloudForms 3.1 Management Engine (CFME) before 5.3 allows remote authenticated users to gain privileges via unspecified vectors, related to an "insecure send method." Cloudforms_3\.0\.1_management_engine, Cloudforms_3\.0\.2_management_engine, Cloudforms_3\.0\.3_management_engine, Cloudforms_3\.0\.4_management_engine, Cloudforms_3\.0\.5_management_engine, Cloudforms_3\.0_management_engine N/A