CVE-2018-1096: SQL Injection
An input sanitization flaw was found in the id field in the dashboard controller of Foreman before 1.16.1. A user could use this flaw to perform an SQL injection attack on the back end database.
Other sources
It was found that an authenticated user can leverage the SELECT query condition to extract information regarding existence of various values in the database.
Upstream bug:
http://projects.theforeman.org/issues/23028
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-1096?
CVE-2018-1096 is an input sanitization flaw in the id field of the dashboard controller in Foreman before version 1.16.1.
How does CVE-2018-1096 affect Foreman?
CVE-2018-1096 allows an attacker to perform an SQL injection attack on the back-end database of Foreman before version 1.16.1.
How severe is CVE-2018-1096?
CVE-2018-1096 has a severity rating of 6.5, indicating a medium severity.
How can I fix CVE-2018-1096?
To fix CVE-2018-1096, upgrade to Foreman version 1.16.1 or later.
Where can I find more information about CVE-2018-1096?
You can find more information about CVE-2018-1096 at the following references: http://projects.theforeman.org/issues/23028, https://github.com/theforeman/foreman/pull/5363, and http://projects.theforeman.org/projects/foreman/repository/revisions/274665e24373de670a9107d4565c10ec41dd5f65