CVE Vulnerabilities

CVE-2014-3642

Published: Oct 06, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

vmdb/app/controllers/application_controller/performance.rb in Red Hat CloudForms 3.1 Management Engine (CFME) before 5.3 allows remote authenticated users to gain privileges via unspecified vectors, related to an insecure send method.

Affected Software

Name Vendor Start Version End Version
Cloudforms_3.0.1_management_engine Redhat 5.2.1 (including) 5.2.1 (including)
Cloudforms_3.0.2_management_engine Redhat 5.2.2 (including) 5.2.2 (including)
Cloudforms_3.0.3_management_engine Redhat 5.2.3 (including) 5.2.3 (including)
Cloudforms_3.0.4_management_engine Redhat 5.2.4 (including) 5.2.4 (including)
Cloudforms_3.0.5_management_engine Redhat * 5.2.5 (including)
Cloudforms_3.0_management_engine Redhat 5.2 (including) 5.2 (including)

References