CVE-2013-2121

Scores

EPSS

0.609medium60.9%
0%20%40%60%80%100%

Percentile: 60.9%

CVSS

6.0medium2.0
0246810

CVSS Score: 6.0/10

All CVSS Scores

CVSS 2.0
6.0

Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Description

Eval injection vulnerability in the create method in the Bookmarks controller in Foreman before 1.2.0-RC2 allows remote authenticated users with permissions to create bookmarks to execute arbitrary code via a controller name attribute.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvdredhat

CWEs

CWE-94CWE-95

Exploits

Exploit ID: 27045

Source: exploitdb

URL: https://www.exploit-db.com/exploits/27045

Vulnerable Software (674)

Type: Configuration

Product: advancecomp

Operating System: rhel

Trait:
{  "fixed": "1.15-13.el6sat"}

Source: redhat

Type: Configuration

Product: advancecomp

Operating System: rhel

Trait:
{  "fixed": "1.15-13.el6sat"}

Source: redhat

Type: Configuration

Product: aether

Operating System: rhel

Trait:
{  "fixed": "1.13.1-13.el7"}

Source: redhat

Type: Configuration

Product: aether

Operating System: rhel

Trait:
{  "fixed": "1.13.1-13.el7"}

Source: redhat

Type: Configuration

Product: ant

Operating System: rhel

Trait:
{  "fixed": "1.9.2-9.el7"}

Source: redhat

Type: Configuration

Product: ant

Operating System: rhel

Trait:
{  "fixed": "1.9.2-9.el7"}

Source: redhat

Type: Configuration

Product: aopalliance

Operating System: rhel

Trait:
{  "fixed": "1.0-8.el7"}

Source: redhat

Type: Configuration

Product: aopalliance

Operating System: rhel

Trait:
{  "fixed": "1.0-8.el7"}

Source: redhat

Type: Configuration

Product: apache-commons-codec-eap6

Operating System: rhel

Trait:
{  "fixed": "1.4-16.redhat_3.1.ep6.el7"}

Source: redhat

Type: Configuration

Product: apache-commons-codec-eap6

Operating System: rhel

Trait:
{  "fixed": "1.4-16.redhat_3.1.ep6.el7"}

Source: redhat

Type: Configuration

Product: apache-commons-net

Operating System: rhel

Trait:
{  "fixed": "3.2-8.el7"}

Source: redhat

Type: Configuration

Product: apache-commons-net

Operating System: rhel

Trait:
{  "fixed": "3.2-8.el7"}

Source: redhat

Type: Configuration

Product: apache-ivy

Operating System: rhel

Trait:
{  "fixed": "2.3.0-4.el7"}

Source: redhat

Type: Configuration

Product: apache-ivy

Operating System: rhel

Trait:
{  "fixed": "2.3.0-4.el7"}

Source: redhat

Type: Configuration

Product: apache-mime4j

Operating System: rhel

Trait:
{  "fixed": "0.6-4_redhat_1.ep6.el6.1"}

Source: redhat

Type: Configuration

Product: apache-mime4j

Operating System: rhel

Trait:
{  "fixed": "0.6-4_redhat_1.ep6.el6.1"}

Source: redhat

Type: Configuration

Product: apache-parent

Operating System: rhel

Trait:
{  "fixed": "10-14.el7"}

Source: redhat

Type: Configuration

Product: apache-parent

Operating System: rhel

Trait:
{  "fixed": "10-14.el7"}

Source: redhat

Type: Configuration

Product: apache-resource-bundles

Operating System: rhel

Trait:
{  "fixed": "2-11.el7"}

Source: redhat

Type: Configuration

Product: apache-resource-bundles

Operating System: rhel

Trait:
{  "fixed": "2-11.el7"}

Source: redhat