Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-4451
Description:The (1) Organization and (2) Locations APIs in Foreman before 1.11.3 and 1.12.x before 1.12.0-RC1 allow remote authenticated users with unlimited filters to bypass organization and location restrictions and read or modify data for an arbitrary organization by leveraging knowledge of the id of that organization.
Test IDs: 1.3.6.1.4.1.25623.1.0.106422  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-4451
RHSA-2018:0336
https://access.redhat.com/errata/RHSA-2018:0336
http://projects.theforeman.org/issues/15182
http://projects.theforeman.org/issues/15182
http://projects.theforeman.org/projects/foreman/repository/revisions/1144040f444b4bf4aae81940a150b26b23b4623c
http://projects.theforeman.org/projects/foreman/repository/revisions/1144040f444b4bf4aae81940a150b26b23b4623c
https://theforeman.org/security.html#2016-4451
https://theforeman.org/security.html#2016-4451




© 1998-2025 E-Soft Inc. All rights reserved.