First published: Fri Aug 26 2016(Updated: )
The web UI in Red Hat CloudForms 4.1 allows remote authenticated users to execute arbitrary code via vectors involving "Lack of field filters."
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat CloudForms | =4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-5383 is classified as critical due to its potential for remote code execution.
To fix CVE-2016-5383, upgrade to a patched version of Red Hat CloudForms that addresses this vulnerability.
CVE-2016-5383 allows remote authenticated users to execute arbitrary code, posing a significant threat to system integrity.
CVE-2016-5383 affects installations of Red Hat CloudForms 4.1 used by organizations with remote authenticated users.
Potential exploits for CVE-2016-5383 involve executing unauthorized commands through the web UI due to the lack of field filters.