Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3070▲ 562 respecto a la semana anterior
Críticas / altas1457▲ 278 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)383▲ 176 respecto a la semana anterior
–

95 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisMedia (5.3)0.44%—Oracle JavaAIRedhat Cloudforms SystemAI23/7/202624/7/2026
An unauthenticated attacker could trigger an Out of Memory condition to crash the Java process for RHCS by repeatedly sending HTTP requests to the TLS endpoint. Depending on how the RHCS server is configured, a manual intervention to restart it may prove necessary.
ModificadaCrítica (9.1)0.61%—Redhat Cloudforms Management Engine6/7/202217/6/2026
A insecure configuration for certificate verification (http.verify_mode = OpenSSL::SSL::VERIFY_NONE) may lead to verification bypass in Red Hat CloudForms 5.x.
ModificadaAlta (8.1)0.77%—Redhat Cloudforms7/6/202117/6/2026
A flaw was found in Cloudforms. A role-based privileges escalation flaw where export or import of administrator files is possible. An attacker with a specific group can perform actions restricted only to system administrator. This is the affect of an incomplete fix for CVE-2020-10783. The highest threat from this…
ModificadaMedia (6.3)0.34%—Redhat Cloudforms2/12/202017/6/2026
This release fixes a Cross Site Request Forgery vulnerability was found in Red Hat CloudForms which forces end users to execute unwanted actions on a web application in which the user is currently authenticated. An attacker can make a forgery HTTP request to the server by crafting custom flash file which can force the…
ModificadaCrítica (9.1)2.5%—Redhat Cloudforms Management Engine11/8/202017/6/2026
A high severity vulnerability was found in all active versions of Red Hat CloudForms before 5.11.7.0. The out of band OS command injection vulnerability can be exploited by authenticated attacker while setuping conversion host through Infrastructure Migration Solution. This flaw allows attacker to execute arbitrary…
ModificadaAlta (7.1)0.64%—Redhat Cloudforms Management Engine11/8/202017/6/2026
Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF) flaw. With the access to add Ansible Tower provider, an attacker could scan and attack systems from the internal network which are not normally accessible.
ModificadaMedia (6.3)0.70%—Redhat Cloudforms Management Engine11/8/202017/6/2026
Red Hat CloudForms 4.7 and 5 is affected by CSV Injection flaw, a crafted payload stays dormant till a victim export as CSV and opens the file with Excel. Once the victim opens the file, the formula executes, triggering any number of possible events. While this is strictly not an flaw that affects the application…
ModificadaCrítica (9.1)1.1%—Redhat Cloudforms11/8/202017/6/2026
Red Hat CloudForms before 5.11.7.0 was vulnerable to the User Impersonation authorization flaw which allows malicious attacker to create existent and non-existent role-based access control user, with groups and roles. With a selected group of EvmGroup-super_administrator, an attacker can perform any API request as a…
ModificadaAlta (8.3)1.0%—Redhat Cloudforms11/8/202017/6/2026
Red Hat CloudForms 4.7 and 5 is affected by a role-based privilege escalation flaw. An attacker with EVM-Operator group can perform actions restricted only to EVM-Super-administrator group, leads to, exporting or importing administrator files.
ModificadaMedia (6.5)0.78%—Redhat Cloudforms11/8/202017/6/2026
Red Hat CloudForms 4.7 and 5 leads to insecure direct object references (IDOR) and functional level access control bypass due to missing privilege check. Therefore, if an attacker knows the right criteria, it is possible to access some sensitive data within the CloudForms.
ModificadaMedia (6)0.88%—Redhat Cloudforms11/8/202017/6/2026
In Red Hat CloudForms 4.7 and 5, the read only widgets can be edited by inspecting the forms and dropping the disabled attribute from the fields since there is no server-side validation. This business logic flaw violate the expected behavior.
ModificadaMedia (5.4)0.66%—Redhat Cloudforms11/8/202017/6/2026
A cross-site scripting flaw was found in Report Menu feature of Red Hat CloudForms 4.7 and 5. An attacker could use this flaw to execute a stored XSS attack on an application administrator using CloudForms.
ModificadaAlta (7.2)4.1%—Redhat Cloudforms Management Engine22/6/202017/6/2026
A flaw was found in the CloudForms management engine version 5.10 and CloudForms management version 5.11, which triggered remote code execution through NFS schedule backup. An attacker logged into the management console could use this flaw to execute arbitrary shell commands on the CloudForms server as root.
ModificadaMedia (5.6)0.71%—Redhat Ansible EngineRedhat Ansible TowerRedhat Ceph StorageRedhat Cloudforms Management Engine+431/3/202017/6/2026
A vulnerability was found in Ansible Engine versions 2.9.x before 2.9.3, 2.8.x before 2.8.8, 2.7.x before 2.7.16 and earlier, where in Ansible's nxos_file_copy module can be used to copy files to a flash or bootflash on NXOS devices. Malicious code could craft the filename parameter to perform OS command injections.…
ModificadaMedia (4.7)0.36%—Redhat AnsibleRedhat Ansible TowerRedhat Cloudforms Management EngineRedhat Openstack+216/3/202017/6/2026
A flaw was found in Ansible Engine when using Ansible Vault for editing encrypted files. When a user executes "ansible-vault edit", another user on the same computer can read the old and new secret, as it is created in a temporary file with mkstemp and the returned file descriptor is closed and the method write_data…
ModificadaBaja (3.9)0.40%—Redhat AnsibleRedhat Ansible TowerRedhat Cloudforms Management EngineRedhat Openstack16/3/202017/6/2026
A flaw was found in Ansible Engine when the module package or service is used and the parameter 'use' is not specified. If a previous task is executed with a malicious user, the module sent can be selected by the attacker using the ansible facts file. All versions in 2.7.x, 2.8.x and 2.9.x branches are believed to be…
ModificadaBaja (3.3)0.40%—Redhat AnsibleRedhat Ansible TowerRedhat Cloudforms Management EngineRedhat Openstack+116/3/202017/6/2026
A flaw was found in Ansible Engine when a file is moved using atomic_move primitive as the file mode cannot be specified. This sets the destination files world-readable if the destination file does not exist and if the file exists, the file could be changed to have less restrictive permissions before the move. This…
ModificadaMedia (4.6)0.47%—Redhat AnsibleRedhat Ansible TowerRedhat Cloudforms Management EngineRedhat Openstack+216/3/202017/6/2026
A flaw was found in the Ansible Engine when the fetch module is used. An attacker could intercept the module, inject a new path, and then choose a new destination path on the controller node. All versions in 2.7.x, 2.8.x and 2.9.x branches are believed to be vulnerable.
ModificadaBaja (3.9)0.36%—Redhat AnsibleRedhat Ansible TowerRedhat Cloudforms Management EngineRedhat Openstack+212/3/202017/6/2026
A flaw was found in Ansible 2.7.16 and prior, 2.8.8 and prior, and 2.9.5 and prior when a password is set with the argument "password" of svn module, it is used on svn command line, disclosing to other users within the same node. An attacker could take advantage by reading the cmdline file from that particular PID on…
ModificadaMedia (5)0.40%—Redhat AnsibleRedhat Ansible TowerRedhat Cloudforms Management EngineRedhat Openstack+211/3/202017/6/2026
A race condition flaw was found in Ansible Engine 2.7.17 and prior, 2.8.9 and prior, 2.9.6 and prior when running a playbook with an unprivileged become user. When Ansible needs to run a module with become user, the temporary directory is created in /var/tmp. This directory is created with "umask 77 && mkdir -p…
ModificadaAlta (7.5)2.2%—NokogiriRedhat Cloudforms Management EngineRedhat OpenshiftRedhat Openstack+419/2/202016/6/2026
Nokogiri before 1.5.4 is vulnerable to XXE attacks
ModificadaMedia (6.5)1.9%—Redhat AnsibleRedhat Ansible TowerRedhat Ceph StorageRedhat Cloudforms Management Engine+42/1/202017/6/2026
Ansible, versions 2.9.x before 2.9.1, 2.8.x before 2.8.7 and Ansible versions 2.7.x before 2.7.15, is not respecting the flag no_log set it to True when Sumologic and Splunk callback plugins are used send tasks results events to collectors. This would discloses and collects any sensitive data.
ModificadaMedia (5.5)0.33%—Redhat Cloudforms Management Engine15/12/201917/6/2026
CFME (CloudForms Management Engine) 5: RHN account information is logged to top_output.log during registration
ModificadaAlta (8.8)0.68%—Redhat CloudformsRedhat Cloudforms Management Engine13/12/201917/6/2026
CFME: CSRF protection vulnerability via permissive check of the referrer header
ModificadaMedia (5.4)0.61%—Redhat Cloudforms Management Engine22/11/201917/6/2026
cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripting due to improper sanitization of user input in Name field.