Skip to main content

Vendor/product archive

redhat / cloudforms_3.1_management_engine CVEs

Beta · best-effort

2 CVEs tagged to redhat / cloudforms_3.1_management_engine1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2014-7814

Published Jan 16, 2015

SQL injection vulnerability in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 allows remote authenticated users to execute arbitrary SQL commands via a crafted REST API reque…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-3692

Published Jan 16, 2015

The customization template in Red Hat CloudForms 3.1 Management Engine (CFME) 5.3 uses a default password for the root account when a password is not specified for a new image, wh…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1