CVE-2017-2653
published 2018-07-27CVE-2017-2653: A number of unused delete routes are present in CloudForms before 5.7.2.1 which can be accessed via GET requests instead of just POST requests. This could…
PriorityP432medium6.5CVSS 3.0
AVNACLPRLUINSUCNIHAN
EPSS
1.39%
69.0th percentile
A number of unused delete routes are present in CloudForms before 5.7.2.1 which can be accessed via GET requests instead of just POST requests. This could allow an attacker to bypass the protect_from_forgery XSRF protection causing the routes to be used. This attack would require additional cross-site scripting or similar attacks in order to execute.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| red_hat | cloudforms | — | — |
| redhat | cloudforms | — | — |
| redhat | cloudforms_management_engine | < 5.7.2.1 | 5.7.2.1 |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
vendor_redhat4.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
CloudForms: UI security issue on Openstack actions
vendor_redhat·2017-03-14·CVSS 4.1
CVE-2017-2653 [MEDIUM] CWE-20 CloudForms: UI security issue on Openstack actions
CloudForms: UI security issue on Openstack actions
A number of unused delete routes are present in CloudForms before 5.7.2.1 which can be accessed via GET requests instead of just POST requests. This could allow an attacker to bypass the protect_from_forgery XSRF protection causing the routes to be used. This attack would require additional cross-site scripting or similar attacks in order to execute.
A number of unused delete routes are present in CloudForms which can be accessed via GET requests instead of just POST requests. This could allow an attacker to bypass the protect_from_forgery XSRF protection causing the routes to be used. This attack would require additional cross-site scripting or similar attacks in order to execute.
GHSA
GHSA-xfgx-c33h-jf9f: A number of unused delete routes are present in CloudForms before 5
ghsa_unreviewed·2022-05-13
CVE-2017-2653 [MEDIUM] CWE-20 GHSA-xfgx-c33h-jf9f: A number of unused delete routes are present in CloudForms before 5
A number of unused delete routes are present in CloudForms before 5.7.2.1 which can be accessed via GET requests instead of just POST requests. This could allow an attacker to bypass the protect_from_forgery XSRF protection causing the routes to be used. This attack would require additional cross-site scripting or similar attacks in order to execute.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-7595 libtiff: Divide-by-zero in JPEGSetupEncode (tiff_jpeg.c)
bugzilla·2017-04-11·CVSS 5.5
CVE-2017-7595 [MEDIUM] CVE-2017-7595 libtiff: Divide-by-zero in JPEGSetupEncode (tiff_jpeg.c)
CVE-2017-7595 libtiff: Divide-by-zero in JPEGSetupEncode (tiff_jpeg.c)
The JPEGSetupEncode function in tiff_jpeg.c in LibTIFF allows attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted image.
Upstream bug:
http://bugzilla.maptools.org/show_bug.cgi?id=2653
Upstream patch:
https://github.com/vadz/libtiff/commit/47f2fb61a3a64667bce1a8398a8fcb1b348ff122
Discussion:
Created mingw-libtiff tracking bugs for this issue:
Affects: fedora-all [bug 1438465]
---
Created mingw-libtiff tracking bugs for this issue:
Affects: epel-7 [bug 1438466]
---
Created libtiff tracking bugs for this issue:
Affects: fedora-all [bug 1441273]
Bugzilla
CVE-2017-2653 CloudForms: UI security issue on Openstack actions
bugzilla·2017-03-14·CVSS 4.1
CVE-2017-2653 [MEDIUM] CVE-2017-2653 CloudForms: UI security issue on Openstack actions
CVE-2017-2653 CloudForms: UI security issue on Openstack actions
Martin Povolny of Red Hat reports:
Several routes in the CloudForms app contained actions that can be performed via GET request instead of POST request. This could result in a failure to check the protect_from_forgery token, so these actions may be vulnerable to XSRF.
Discussion:
Accidentally scored without user interaction required, corrected CVSSv2/3 scores.
---
This issue has been addressed in the following products:
CloudForms Management Engine 5.7
Via RHSA-2017:0898 https://access.redhat.com/errata/RHSA-2017:0898
2018-07-27
Published