CVE-2016-3072

Severity
8.8HIGH
EPSS
0.4%
top 39.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 7
Latest updateMay 14

Description

Multiple SQL injection vulnerabilities in the scoped_search function in app/controllers/katello/api/v2/api_controller.rb in Katello allow remote authenticated users to execute arbitrary SQL commands via the (1) sort_by or (2) sort_order parameter.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages3 packages

RubyGemskatello< 2.4.3
CVEListV5the_foreman_project/katello3.10 and older

Patches

🔴Vulnerability Details

4
GHSA
Katello SQL Injection vulnerabilities2022-05-14
OSV
Katello SQL Injection vulnerabilities2022-05-14
GHSA
katello SQL Injection vulnerability2022-05-13
CVEList
CVE-2016-3072: Multiple SQL injection vulnerabilities in the scoped_search function in app/controllers/katello/api/v2/api_controller2016-06-07

📋Vendor Advisories

2
Red Hat
katello: SQL inject in errata-related REST API2018-12-12
Red Hat
Katello: Authenticated sql injection via sort_by and sort_order request parameter2016-05-16

💬Community

1
Bugzilla
CVE-2016-3072 Katello: Authenticated sql injection via sort_by and sort_order request parameter2016-03-29