CVE-2014-0137
published 2014-05-14CVE-2014-0137: SQL injection vulnerability in the saved_report_delete action in the ReportController in Red Hat CloudForms Management Engine (CFME) before 5.2.3.2 allows…
PriorityP336medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
1.43%
70.0th percentile
SQL injection vulnerability in the saved_report_delete action in the ReportController in Red Hat CloudForms Management Engine (CFME) before 5.2.3.2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, related to MiqReportResult.exists.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| redhat | cloudforms_3.0_management_engine | <= 5.2.3 | — |
| redhat | cloudforms_3.0_management_engine | — | — |
| redhat | cloudforms_3.0_management_engine | — | — |
| redhat | cloudforms_3.0_management_engine | — | — |
CVSS provenance
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
CFME: ReportController SQL injection
vendor_redhat·2014-05-12·CVSS 6.5
CVE-2014-0137 [MEDIUM] CWE-89 CFME: ReportController SQL injection
CFME: ReportController SQL injection
SQL injection vulnerability in the saved_report_delete action in the ReportController in Red Hat CloudForms Management Engine (CFME) before 5.2.3.2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, related to MiqReportResult.exists.
GHSA
GHSA-vc39-w9gh-6rx2: SQL injection vulnerability in the saved_report_delete action in the ReportController in Red Hat CloudForms Management Engine (CFME) before 5
ghsa_unreviewed·2022-05-17
CVE-2014-0137 [MEDIUM] CWE-89 GHSA-vc39-w9gh-6rx2: SQL injection vulnerability in the saved_report_delete action in the ReportController in Red Hat CloudForms Management Engine (CFME) before 5
SQL injection vulnerability in the saved_report_delete action in the ReportController in Red Hat CloudForms Management Engine (CFME) before 5.2.3.2 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, related to MiqReportResult.exists.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-0137 CFME: ReportController SQL injection
bugzilla·2014-03-14·CVSS 6.5
CVE-2014-0137 [MEDIUM] CVE-2014-0137 CFME: ReportController SQL injection
CVE-2014-0137 CFME: ReportController SQL injection
Jan Rusnacko of the Red Hat Product Security Team reports:
The ReportController action saved_report_delete fails to sanitize user input.
By passing an array in user supplied data can be sent directly to
MiqReportResult.exists? which is then used to construct an SQL query that is
executed.
Discussion:
Acknowledgements:
This issue was discovered by Jan Rusnacko of the Red Hat Product Security Team.
---
This issue has been addressed in following products:
CloudForms Management Engine 5.x
Via RHSA-2014:0469 https://rhn.redhat.com/errata/RHSA-2014-0469.html
Bugzilla
CVE-2014-0497 flash-plugin: integer underflow flaw leads to arbitrary code execution (APSB14-04)
bugzilla·2014-02-04·CVSS 9.8
CVE-2014-0497 [CRITICAL] CVE-2014-0497 flash-plugin: integer underflow flaw leads to arbitrary code execution (APSB14-04)
CVE-2014-0497 flash-plugin: integer underflow flaw leads to arbitrary code execution (APSB14-04)
Adobe has released Flash Player 11.2.202.336 for Linux to correct the following flaw:
* These updates resolve an integer underflow vulnerability that could be exploited to execute arbitrary code on the affected system (CVE-2014-0497).
External References:
http://helpx.adobe.com/security/products/flash-player/apsb14-04.html
Discussion:
This issue has been addressed in following products:
Supplementary for Red Hat Enterprise Linux 5
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2014:0137 https://rhn.redhat.com/errata/RHSA-2014-0137.html
2014-05-14
Published