CVE Vulnerabilities

CVE-2014-0078

Published: May 14, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The CatalogController in Red Hat CloudForms Management Engine (CFME) before 5.2.3.2 allows remote authenticated users to delete arbitrary catalogs via vectors involving guessing the catalog ID.

Affected Software

Name Vendor Start Version End Version
Cloudforms_3.0_management_engine Redhat 5.2.1 5.2.1
Cloudforms_3.0_management_engine Redhat * 5.2.3
Cloudforms_3.0_management_engine Redhat 5.2.2 5.2.2
Cloudforms_3.0_management_engine Redhat 5.2 5.2

References