CVE Vulnerabilities

CVE-2016-4457

Published: Jun 08, 2017 | Modified: Feb 12, 2023
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
5.8 MODERATE
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V3
6.1 MODERATE
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Ubuntu

CloudForms Management Engine before 5.8 includes a default SSL/TLS certificate.

Affected Software

Name Vendor Start Version End Version
Cloudforms_management_engine Redhat 5.7 (including) 5.7 (including)
CloudForms Management Engine 5.7 RedHat cfme-0:5.7.3.2-1.el7cf *
CloudForms Management Engine 5.7 RedHat cfme-appliance-0:5.7.3.2-1.el7cf *
CloudForms Management Engine 5.7 RedHat cfme-gemset-0:5.7.3.2-1.el7cf *
CloudForms Management Engine 5.7 RedHat rh-ruby23-rubygem-nokogiri-0:1.7.2-1.el7cf *
CloudForms Management Engine 5.7 RedHat rh-ruby23-rubygem-ovirt-engine-sdk4-0:4.1.5-1.el7cf *
CloudForms Management Engine 5.8 RedHat ansible-0:2.2.1.0-2.el7 *
CloudForms Management Engine 5.8 RedHat ansible-tower-0:3.1.2-1.el7at *
CloudForms Management Engine 5.8 RedHat bubblewrap-0:0.1.7-1.el7 *
CloudForms Management Engine 5.8 RedHat cfme-0:5.8.0.17-1.el7cf *
CloudForms Management Engine 5.8 RedHat cfme-appliance-0:5.8.0.17-1.el7cf *
CloudForms Management Engine 5.8 RedHat cfme-gemset-0:5.8.0.17-1.el7cf *
CloudForms Management Engine 5.8 RedHat erlang-0:19.0.4-1.el7at *
CloudForms Management Engine 5.8 RedHat freeipmi-0:1.5.1-2.el7cf *
CloudForms Management Engine 5.8 RedHat google-compute-engine-0:2.0.0-1.el7cf *
CloudForms Management Engine 5.8 RedHat google-config-0:2.0.0-1.el7cf *
CloudForms Management Engine 5.8 RedHat libtomcrypt-0:1.17-23.el7 *
CloudForms Management Engine 5.8 RedHat libtommath-0:0.42.0-4.el7 *
CloudForms Management Engine 5.8 RedHat nginx-1:1.10.2-1.el7at *
CloudForms Management Engine 5.8 RedHat postgresql94-0:9.4.11-2PGDG.el7at *
CloudForms Management Engine 5.8 RedHat prince-0:9.0r2-10.el7cf *
CloudForms Management Engine 5.8 RedHat python-crypto-0:2.6.1-7.el7 *
CloudForms Management Engine 5.8 RedHat python-ecdsa-0:0.11-4.el7 *
CloudForms Management Engine 5.8 RedHat python-httplib2-0:0.9.1-2.1.el7 *
CloudForms Management Engine 5.8 RedHat python-keyczar-0:0.71c-2.el7 *
CloudForms Management Engine 5.8 RedHat python-meld3-0:0.6.10-1.el7 *
CloudForms Management Engine 5.8 RedHat python-paramiko-0:1.15.2-3.el7 *
CloudForms Management Engine 5.8 RedHat python-passlib-0:1.6.5-1.1.el7 *
CloudForms Management Engine 5.8 RedHat rabbitmq-server-0:3.6.5-1.el7at *
CloudForms Management Engine 5.8 RedHat rh-postgresql95-postgresql-pglogical-0:1.2.1-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-postgresql95-repmgr-0:3.1.3-2.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-bcrypt-0:3.1.10-3.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-eventmachine-0:1.0.7-6.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-ffi-0:1.9.8-4.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-hamlit-0:2.7.2-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-http_parser.rb-0:0.6.0-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-json-0:2.0.2-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-linux_block_device-0:0.2.1-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-memory_buffer-0:0.1.0-2.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-net_app_manageability-0:0.1.0-3.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-nio4r-0:1.2.1-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-nokogiri-0:1.6.8-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-ovirt-engine-sdk4-0:4.1.5-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-pg-0:0.18.2-5.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-pkg-config-0:1.1.7-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-puma-0:3.3.0-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-redhat_access_cfme-0:1.1.0-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-redhat_access_lib-0:0.1.0-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-rugged-0:0.25.0-b10.2.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-thin-0:1.7.0-1.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-unf_ext-0:0.0.7.1-3.el7cf *
CloudForms Management Engine 5.8 RedHat rh-ruby23-rubygem-websocket-driver-0:0.6.3-1.el7cf *
CloudForms Management Engine 5.8 RedHat smem-0:1.4-1.el7cf *
CloudForms Management Engine 5.8 RedHat sshpass-0:1.06-1.el7 *
CloudForms Management Engine 5.8 RedHat supervisor-0:3.1.3-3.el7 *
CloudForms Management Engine 5.8 RedHat wmi-0:1.3.14-7.el7cf *

References