An arbitrary code execution flaw was found in Foreman. This flaw allows an admin user to bypass safe mode in templates and execute arbitrary code on the underlying operating system.
2023-09-20T14:15:12.827
2024-11-21T07:36:35.247
Modified
CVSSv3.1: 9.1 (CRITICAL)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | theforeman | foreman | * | Yes |
Application | redhat | satellite | < 6.13.3 | Yes |
Operating System | redhat | enterprise_linux | 8.0 | No |