Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2016-3728


Eval injection vulnerability in tftp_api.rb in the TFTP module in the Smart-Proxy in Foreman before 1.10.4 and 1.11.x before 1.11.2 allows remote attackers to execute arbitrary code via the PXE template type portion of the PATH_INFO to tftp/.


Published

2016-05-20T14:59:04.387

Last Modified

2025-04-12T10:46:40.837

Status

Deferred

Source

[email protected]

Severity

CVSSv3.0: 8.8 (HIGH)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

8.6

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-284

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application theforeman foreman 1.11.0 Yes
Application theforeman foreman 1.11.0 Yes
Application theforeman foreman 1.11.0 Yes
Application theforeman foreman 1.11.0 Yes
Application theforeman foreman 1.11.1 Yes
Application theforeman foreman 1.10.3 Yes

References