An input sanitization flaw was found in the id field in the dashboard controller of Foreman prior to 1.16.1. A user could use this flaw to perform an SQL injection attack on the back end database.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
theforeman foreman |
||
redhat satellite 6.4 |