cbcvebase.
CVE-2014-0136
published 2014-10-27

CVE-2014-0136: The (1) get and (2) log methods in the AgentController in Red Hat CloudForms 3.0 Management Engine (CFME) 5.x allow remote attackers to insert arbitrary text…

PriorityP427medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
1.57%
72.5th percentile
The (1) get and (2) log methods in the AgentController in Red Hat CloudForms 3.0 Management Engine (CFME) 5.x allow remote attackers to insert arbitrary text into log files via unspecified vectors.

Affected

1 ranges
VendorProductVersion rangeFixed in
redhatcloudforms_3.0_management_engine<= 5.2.5.3

CVSS provenance

nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.