VulnerabilityModified
CVE-2016-7078
foreman before version 1.15.0 is vulnerable to an information leak through organizations and locations feature.
MEDIUM 4.3EPSS 1.36%
Does this matter?
Lower severity and a low EPSS score (1.36%). Track it; it rarely justifies an emergency change on its own.
Description
foreman before version 1.15.0 is vulnerable to an information leak through organizations and locations feature. When a user is assigned _no_ organizations/locations, they are able to view all resources instead of none (mirroring an administrator's view). The user's actions are still limited by their assigned permissions, e.g. to control viewing, editing and deletion.
- CVSS 3.0
- 4.3 MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 1.36% probability · 70th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-285, CWE-200
- Affected
- theforeman/foreman
- Source
- secalert@redhat.com
References
- http://www.securityfocus.com/bid/96385Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-7078Issue Tracking, Third Party Advisory
- https://github.com/theforeman/foreman/commit/5f606e11cf39719bf62f8b1f3396861b32387905Third Party Advisory
- https://projects.theforeman.org/issues/16982Vendor Advisory
- https://seclists.org/oss-sec/2017/q1/470Mailing List, Third Party Advisory
- https://theforeman.org/security.html#2016-7078Vendor Advisory
- http://www.securityfocus.com/bid/96385Third Party Advisory, VDB Entry
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-7078Issue Tracking, Third Party Advisory
- https://github.com/theforeman/foreman/commit/5f606e11cf39719bf62f8b1f3396861b32387905Third Party Advisory
- https://projects.theforeman.org/issues/16982Vendor Advisory
- https://seclists.org/oss-sec/2017/q1/470Mailing List, Third Party Advisory
- https://theforeman.org/security.html#2016-7078Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.