TROYANOSYVIRUS
Retour aux CVEs

CVE-2016-4451

N/A

Description

The (1) Organization and (2) Locations APIs in Foreman before 1.11.3 and 1.12.x before 1.12.0-RC1 allow remote authenticated users with unlimited filters to bypass organization and location restrictions and read or modify data for an arbitrary organization by leveraging knowledge of the id of that organization.

Details CVE

Score CVSS v3.1N/A
Publie8/19/2016
Derniere modification4/12/2025
Sourcenvd
Observations honeypot0

Produits affectes

theforeman:foreman

Faiblesses (CWE)

CWE-254

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.