CVE-2013-2121
31.07.2013, 13:20
Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.
| Vendor | Product | Version |
|---|---|---|
| redhat | openstack | 3.0 |
| theforeman | foreman | 𝑥 ≤ 1.2.0 |
| theforeman | foreman | 1.1 |
𝑥
= Vulnerable software versions
References