CVE-2014-0057 PUBLISHED CVSS 7.5 HIGH

The x_button method in the ServiceController (vmdb/app/controllers/service_controller.rb) in Red Hat CloudForms 3.0 Management Engine 5.2 allows remote attackers to execute arbitrary methods via unspecified vectors.

EPSS 0.70% · 71.9th percentile

Risk Scores

CVSS v2.0
7.5
EPSS Score
0.70%
71.9th percentile

Affected Products

VendorProductVersions
redhatcloudforms_3.0_management_engine5.2
redhatcloudforms3.0
n/an/an/a

Timeline

References

Open in Interactive Console →