CVE-2013-4172
published 2013-08-23CVE-2013-4172: The Red Hat CloudForms Management Engine 5.1 allow remote administrators to execute arbitrary Ruby code via unspecified vectors.
PriorityP345high8.5CVSS 2.0
AVNACMAuSCCICAC
EPSS
1.26%
66.1th percentile
The Red Hat CloudForms Management Engine 5.1 allow remote administrators to execute arbitrary Ruby code via unspecified vectors.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | cloudforms_management_engine | — | — |
CVSS provenance
nvdv2.08.5HIGHAV:N/AC:M/Au:S/C:C/I:C/A:C
vendor_redhat8.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
interface: Ruby code injection
vendor_redhat·2013-08-19·CVSS 8.5
CVE-2013-4172 [HIGH] CWE-96 interface: Ruby code injection
interface: Ruby code injection
The Red Hat CloudForms Management Engine 5.1 allow remote administrators to execute arbitrary Ruby code via unspecified vectors.
GHSA
GHSA-jhv9-pf4q-qvw6: The Red Hat CloudForms Management Engine 5
ghsa_unreviewed·2022-05-17
CVE-2013-4172 [HIGH] CWE-94 GHSA-jhv9-pf4q-qvw6: The Red Hat CloudForms Management Engine 5
The Red Hat CloudForms Management Engine 5.1 allow remote administrators to execute arbitrary Ruby code via unspecified vectors.
No detection rules found.
No public exploits indexed.
2013-08-23
Published