Arbitrary Method Execution Vulnerability in Red Hat CloudForms 3.0 Management Engine 5.2

Arbitrary Method Execution Vulnerability in Red Hat CloudForms 3.0 Management Engine 5.2

CVE-2014-0057 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

The x_button method in the ServiceController (vmdb/app/controllers/service_controller.rb) in Red Hat CloudForms 3.0 Management Engine 5.2 allows remote attackers to execute arbitrary methods via unspecified vectors.

Learn more about our Cloud Audit.