Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Cloudforms_3\.0\.5_management_engine
(Redhat)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 2 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2014-10-06 | CVE-2014-0140 | Red Hat CloudForms 3.1 Management Engine (CFME) before 5.3 allows remote authenticated users to access sensitive controllers and actions via a direct HTTP or HTTPS request. | Cloudforms_3\.0\.1_management_engine, Cloudforms_3\.0\.2_management_engine, Cloudforms_3\.0\.3_management_engine, Cloudforms_3\.0\.4_management_engine, Cloudforms_3\.0\.5_management_engine, Cloudforms_3\.0_management_engine | N/A | ||
2014-10-06 | CVE-2014-3642 | vmdb/app/controllers/application_controller/performance.rb in Red Hat CloudForms 3.1 Management Engine (CFME) before 5.3 allows remote authenticated users to gain privileges via unspecified vectors, related to an "insecure send method." | Cloudforms_3\.0\.1_management_engine, Cloudforms_3\.0\.2_management_engine, Cloudforms_3\.0\.3_management_engine, Cloudforms_3\.0\.4_management_engine, Cloudforms_3\.0\.5_management_engine, Cloudforms_3\.0_management_engine | N/A |